-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 May 2025 14:27:30 -0700 Source: libeconf Architecture: source Version: 0.3.8-1+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Andreas Henriksson <andreas@fatal.se> Changed-By: Chris Lamb <lamby@debian.org> Closes: 1037333 Changes: libeconf (0.3.8-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Debian LTS team. * CVE-2023-22652: Prevent a buffer overflow vulnerability that could have been exploited via malformed config files. (Closes: #1037333) * Remove existing debian/gbp.conf and debian/salsa-ci.yml, and add LTS-specific debian/salsa-ci.yml. Checksums-Sha1: add06f1d03afeac665bb4a31cc340cfbf06e7212 1924 libeconf_0.3.8-1+deb11u1.dsc 874fb611192d8ce657f4089e16e274d3ec3bcdbc 38088 libeconf_0.3.8.orig.tar.gz 64063e6410ee097375fda16ff2b58afe60ab29d1 3016 libeconf_0.3.8-1+deb11u1.debian.tar.xz 1348c937b7ac7a2ec6d41136e388ea47177a3049 5623 libeconf_0.3.8-1+deb11u1_source.buildinfo Checksums-Sha256: 29b02ce820a84b1a8a9e353824a792a5dd06d31c492115321f19066a1ebb20b2 1924 libeconf_0.3.8-1+deb11u1.dsc e0c265f85eef2aca400d17b88f74891ce40ed88d959ebc29f529d26121f7e8e3 38088 libeconf_0.3.8.orig.tar.gz b4aa59600b393c2e1dd3afc54778ef32b0bd32957c3d558ac8bc8c543b081ff0 3016 libeconf_0.3.8-1+deb11u1.debian.tar.xz 18d817b891ef68106021f74da2902af64fd94322ad36e0465902b25cd1c8fa50 5623 libeconf_0.3.8-1+deb11u1_source.buildinfo Files: 66c98e104c5bff4880f6b5c8ede37cc0 1924 libs optional libeconf_0.3.8-1+deb11u1.dsc d9ee0aa1014617296b60a2514262fc97 38088 libs optional libeconf_0.3.8.orig.tar.gz 74204a4d7f473246fc3d502afd979336 3016 libs optional libeconf_0.3.8-1+deb11u1.debian.tar.xz 74a9f55cc2322f9c75cd9ea4ae730fcb 5623 libs optional libeconf_0.3.8-1+deb11u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAmgie5AACgkQHpU+J9Qx HljYUBAAm96/TrmgjNkwOLiTu+eqatiPrttBHz+ebcm2NjiERcHdN7locUUvH03x 02JeVhIcvwEcOcRj4dhj3REeO1mgMJFsz5eRs1we/5xZYElws+CdGP8TctUgoRG5 v6SpSMODf1Fbf+BX208BTfyoCpHwjS7idaBo2ddhiFZiV8GvL34fBJPfiefyTjEv AhD4L1oLRNzcNoQkTTNBveyyLzmzAqYkYUCpJ/55zW6GKSplKoHl14QhbGleiRnD p8CfTrt72tHqEFH5GAXH0kEqy2SowrVFSgoCpBSOBpxmDc17MjfaVsIbNlMzUcCp kZDmUgssQb/Rjkw2VFGWsoWhFZzg8nZuETnUHysLhkMqBfdEsv7L/z7pmHWoDdoz rrx1UMid3Aea8gx3M07ndFBJbL05+FI7Z5eiIvZXVQYQ0yaliMcWpjM1s/72dIlP AvN+fyxwmA1FfbKW5i3tQkrlHl3Ypdzgl4pEQn1RFZvp0ZtDp8uCpxRtbhpSODyw lh4R5flwGTLCRSeezelAkUL+fR9lD3dNao500vFI8EXUX43VSdwKfU0UawcqcjD+ 3R3tgz2zrvWW/V+acPXP5GFoIJQMEJ+bPtUiWTN2TpHHyFMJxKkbemUI80jV4YKN DQ19avi+SkPC1thVbgT/iCEAgUzT87XG7jkQ4u/+GC7lO4KyQYU= =V/js -----END PGP SIGNATURE-----