-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 29 Jun 2025 02:33:57 +0200 Source: u-boot Architecture: source Version: 2021.01+dfsg-5+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: Vagrant Cascadian <vagrant@debian.org> Changed-By: Daniel Leidert <dleidert@debian.org> Closes: 983269 983270 Changes: u-boot (2021.01+dfsg-5+deb11u2) bullseye-security; urgency=medium . * Non-maintainer upload by the Debian LTS team. * d/patches/CVE-2021-27097-1.patch, d/patches/CVE-2021-27097-2.patch, d/patches/CVE-2021-27097-3.patch, d/patches/CVE-2021-27097-4.patch: Add patches to fix CVE-2021-27097. - Fix mishandling of a modified FIT (closes: #983270). * d/patches/CVE-2021-27138-1.patch, d/patches/CVE-2021-27138-2.patch: Add patches to fix CVE-2021-27138. - Fix mishandled use of unit addresses in a FIT (closes: #983269). Checksums-Sha1: 4aa3c74d2c5ebe459010f2ec6e423c91d6df7159 3504 u-boot_2021.01+dfsg-5+deb11u2.dsc bb849ec021e5ed18516f2f7727965da08de718b9 13829776 u-boot_2021.01+dfsg.orig.tar.xz 52e59b84ac1596942064a2143368a9aba9c519f4 65084 u-boot_2021.01+dfsg-5+deb11u2.debian.tar.xz 2c7202997358ae2e95a3c7380b30ca50f6cb092d 11208 u-boot_2021.01+dfsg-5+deb11u2_amd64.buildinfo Checksums-Sha256: 4a0f947b9df678c5cf90981cf4f693bcef9d50793ef6fc82a69d9c88f235103e 3504 u-boot_2021.01+dfsg-5+deb11u2.dsc 2c2f2422b14630e47b9ebf27cff7941da242512f5bac4ad7af101a933282e7a0 13829776 u-boot_2021.01+dfsg.orig.tar.xz 4cab235894666432e143d2275e03dfbbb2b15c1b289a34cc740f8dd1ddbb4873 65084 u-boot_2021.01+dfsg-5+deb11u2.debian.tar.xz bc5cbb3a5662255e3d709a5c2563a671763b629ce716d175aa806e8b8597548d 11208 u-boot_2021.01+dfsg-5+deb11u2_amd64.buildinfo Files: 3b3a26b47f01ecf36d16d693faeec7e9 3504 admin optional u-boot_2021.01+dfsg-5+deb11u2.dsc 8bc543dbd76bdc302970e88938e823c2 13829776 admin optional u-boot_2021.01+dfsg.orig.tar.xz ae90254abb5013b4a5bcb06dba84a532 65084 admin optional u-boot_2021.01+dfsg-5+deb11u2.debian.tar.xz c967ffe801d096c978f82dfe25a7dc01 11208 admin optional u-boot_2021.01+dfsg-5+deb11u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvu1N7VVEpMA+KD3HS80FZ8KW0F0FAmjcXHoACgkQS80FZ8KW 0F38+g//amMj6+WIizBF3XX56XxlJa1gxFqUQmQ6LUDW92IZr+PgNnPeRp2RuexY F3yA+Ibl2nWebYSKn6fuBBeS/IlNTUB8IuMsnnYCGoFYnqtFCP9ojolCyoMSnLxO ZXZ7Rj3tbA2GsMG7fYZgiChkZtnUe+UMx5Ec8d1pNcgE/JMfJBBeaJoZJ3O8/Z3S 2tWPd3koSAVrRYB/r8MHfOzSfjjQFoeCUm5lJZIIKjJV06w+Hs56i1LteKAyt9GS Z+Cs0KSLgfoLfaTCka2ubeJz9Zs1OB3PitHSbE9rXbQAPe/8n6HJZbxY+wO5W2i9 dC7fZFAIV6bi6gqrMOrkvhePQ4K09lQBEcrW24exLYBbchvgqjeu0PFij51pwN1j 5+Oy+36hc0XeZihdiEPl1PagDP3+Et8cGvjVPXzFlYNhMZ48a3TvtaK8PkF6Ts82 KeUnqPURmT1XM3QztSn9aAsCc1QP0PQS5nizQ+g+mxy+ecZDnshpy3lCmSjak3m4 bbroUgz9R+Xi7yBcGvWGpy6m0yg8wIJKddZdth4S+ze3eznWiROAmvn/5AxGFBaP tyOSQbS/Y+jaRP1tIy15UJObRqhk3ARV5+NlmtdkxLrQapbIIQfsVwVWR3zedPlf XPo+iIolkgKJCqWxksJz8mvt9IWT1V9SPfdXOKOf1oAdS6HIL4k= =ikNO -----END PGP SIGNATURE-----