-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 08 Sep 2024 08:44:19 +0200 Source: expat Binary: expat expat-dbgsym libexpat1 libexpat1-dbgsym libexpat1-dev libexpat1-udeb Architecture: mips64el Version: 2.5.0-1+deb12u1 Distribution: bookworm-security Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-03) Changed-By: Laszlo Boszormenyi (GCS) Description: expat - XML parsing C library - example application libexpat1 - XML parsing C library - runtime library libexpat1-dev - XML parsing C library - development kit libexpat1-udeb - XML parsing C library - runtime library (udeb) Closes: 1080149 1080150 1080152 Changes: expat (2.5.0-1+deb12u1) bookworm-security; urgency=medium . * Backport security fix for CVE-2024-45490: reject negative len for XML_ParseBuffer() (closes: #1080149). * Backport security fix for CVE-2024-45491: detect integer overflow in dtdCopy() (closes: #1080150). * Backport security fix for CVE-2024-45492: detect integer overflow in function nextScaffoldPart() (closes: #1080152). Checksums-Sha1: 8470bd340795813b105001bd05863f5ae78c59c4 33752 expat-dbgsym_2.5.0-1+deb12u1_mips64el.deb abd2205b2e9467f9115a14ffdabff2a9ce7d91b6 8631 expat_2.5.0-1+deb12u1_mips64el-buildd.buildinfo 514f0ddc7895508ad942e20d450d7e1a80a79557 40636 expat_2.5.0-1+deb12u1_mips64el.deb 4183cae492c060a7323df6a1e87769606f0b51a5 303504 libexpat1-dbgsym_2.5.0-1+deb12u1_mips64el.deb a840852e7dd09ccdc5a1caf39b67cfad776e6425 151228 libexpat1-dev_2.5.0-1+deb12u1_mips64el.deb bfa07b0ae6bd3bdc388901a25a1a7df0d08775dc 55840 libexpat1-udeb_2.5.0-1+deb12u1_mips64el.udeb b2ddebb9384c5b28859e163680e08c20d8dcff80 96256 libexpat1_2.5.0-1+deb12u1_mips64el.deb Checksums-Sha256: fa78300a0aee90944d85c6183ab32df7c3b0ae167ec4dcd27cd377a24acc00d2 33752 expat-dbgsym_2.5.0-1+deb12u1_mips64el.deb fd9ab9a750f6a18689be99ab74096945abaccd0b9c69b61f4e0ac27efb0212f7 8631 expat_2.5.0-1+deb12u1_mips64el-buildd.buildinfo 68978104c97475666ae547ac20810b90dc69d587fb19f58a7096b40ac952d99a 40636 expat_2.5.0-1+deb12u1_mips64el.deb b151c428283a34a41db45043d5f8f66fc9773e68ef173e5c0054d3376ef50790 303504 libexpat1-dbgsym_2.5.0-1+deb12u1_mips64el.deb 780cee5d3c3c68a5c740b81fac194bb850c5971991064659823ce53c7dc135b9 151228 libexpat1-dev_2.5.0-1+deb12u1_mips64el.deb 7617d828e4e51141d1be23fd833831bc946f9a633591bd471d8b1e2f28ba3e36 55840 libexpat1-udeb_2.5.0-1+deb12u1_mips64el.udeb c1f913994ca1491c63cec139b1644ac3855ef2d8e474062087542c815f2534e3 96256 libexpat1_2.5.0-1+deb12u1_mips64el.deb Files: 578ca7ad5ff77741c741e1a614ba38a1 33752 debug optional expat-dbgsym_2.5.0-1+deb12u1_mips64el.deb 00fcb341677f99247d1393dc1dea886e 8631 text optional expat_2.5.0-1+deb12u1_mips64el-buildd.buildinfo 7acd666424f12fe7efe7e06c5e30013a 40636 text optional expat_2.5.0-1+deb12u1_mips64el.deb 96fd3c697c353f9978c81fda5021f1b6 303504 debug optional libexpat1-dbgsym_2.5.0-1+deb12u1_mips64el.deb 2b9fed2c6ea03746a96c1da978ecf95b 151228 libdevel optional libexpat1-dev_2.5.0-1+deb12u1_mips64el.deb ea2c2144650c69a6bbe979ab62795df5 55840 debian-installer optional libexpat1-udeb_2.5.0-1+deb12u1_mips64el.udeb 29e84fac72ef328f46fecb8674c6c300 96256 libs optional libexpat1_2.5.0-1+deb12u1_mips64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEunmvxaaGKuI+hxxClmZGXOM83t8FAmblS7sACgkQlmZGXOM8 3t8zahAA4xTT4K317EugTGa+xvXObClV5WLixdWc45D+dZL7E2ChZ+jm3ta03Jl3 3Yn0vRsGcJrbT/vMtZBMciWOEQ2WWskiciEUDX6O+OMXSsb7Cqw8rWx3tTUYm6lJ cw7zDxJUFFmW8Dftbq88uwoyAyO5HWayBuEZgmMbQkrD+AlkQ/BLtkrPxAQU57Mn 7/0LZbNXp1E/IkeLfCUSnwaQU+AwrRV4m9uh0jMOZeNk6D9j5W1eUxyQuYpZ0fVk Bq8X9BHnngnLsUSQnSOHSqXKFVz81F+xBZtHDPDzUPiFHFf+DToy1DjZGl5VBIB+ 7CfxfV68fO+dxHRv1XSnZ4bN2a1uwU6RXLjba/UVRLXgo+pj2iDeUJ3NsJhgF6H9 NLq0bAsKP5MNzJ/KBtUKG5W25bsRXeWvYD1OAcKXhZQBozlXyouypc4KBhuUpYWI eZdQOBTRqwDkNmF2xaQqDZHMI1Z1bTi/oLHyP6KdnPTtbYGBaWQNdzeEEhAlkkmd ubfYxb2Z5CNIX2peh6nbDTiPI9kYecUd7r9Ytq1NVc/9h/XNZAN7RHMOjQIKstu+ K1N1ctJrQuQiSNoNwjV0m//bFy4g4Jn3n9b9Zk5iToMlEjRSIv3D+Iy1RMGB4too wuc1ElMfR56pbQB9SEcV/EhNY03ORdZ7lboAKRJRl+vI7Gu7XpI= =GuQn -----END PGP SIGNATURE-----