-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 16 Jan 2025 17:16:37 +0100 Source: 389-ds-base Binary: 389-ds-base 389-ds-base-dbgsym 389-ds-base-dev 389-ds-base-libs 389-ds-base-libs-dbgsym Architecture: arm64 Version: 2.3.1+dfsg1-1+deb12u1 Distribution: bookworm Urgency: high Maintainer: arm Build Daemon (arm-ubc-02) Changed-By: Andrej Shadura Description: 389-ds-base - 389 Directory Server suite - server 389-ds-base-dev - 389 Directory Server suite - development files 389-ds-base-libs - 389 Directory Server suite - libraries Closes: 1072531 1082852 Changes: 389-ds-base (2.3.1+dfsg1-1+deb12u1) bookworm; urgency=high . * Non-maintainer upload. * Apply security patches from the upstream: - CVE-2024-2199 and CVE-2024-8445: Crash when modifying userPassword using malformed input (Closes: #1072531, #1082852). - CVE-2024-5953: Denial of service while attempting to log in with a user with a malformed hash in their password. - CVE-2024-3657: Failure on the directory server with specially-crafted LDAP query leading to denial of service. Checksums-Sha1: 215aa7614e8991e1534e8580e913d98939a196db 9491940 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb 97eea55a4fb4363cdb09fa740c8d86ef585ca2a0 73704 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_arm64.deb d0a20f0fb036e768fed97c7ac1a78184bdd3e573 4102632 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb ebbec933b13b117d43536751c07cd46361cb8017 1000520 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_arm64.deb 737234a33cb505957ef58fa12a6a9e90d4e31ec1 20391 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64-buildd.buildinfo 8c5fadaa666327436a95eb73aeb316ebd2c7cb8f 2156488 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64.deb Checksums-Sha256: 6864f0dbf6857fcbf3824445db83b6c7e714d6d672be520ec81a7a11ac1ce815 9491940 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb ea0eb469b3e6e86e479e11ef96cd3c2dedc2c188d71e6a4d4672d0908be62825 73704 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_arm64.deb 3f89ef777c5fadaec5535ce8d4d0a36876c12725c12506a7f691089009c3782d 4102632 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb a33c0cc45faba9ece570877963a985c03aa1d35b52a0182f9a8914e81608dc35 1000520 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_arm64.deb f4976b07249a74624e3af57bc5426d5da94b7077f5257bedbf7c748e9faf108b 20391 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64-buildd.buildinfo b3b277fc3a78ef895068941d43eb057ab2ccbb4513f44544de9f08baeebc8ec0 2156488 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64.deb Files: 3fbcd22e3bac994ea32d1e50902a5236 9491940 debug optional 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb ed7bb788567f0189ff93140090245d55 73704 libdevel optional 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_arm64.deb c943a7beddca244b8ec603052aeaed2d 4102632 debug optional 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_arm64.deb d03a55899afb20f1a663ec7a817ddbc0 1000520 libs optional 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_arm64.deb 0f028e72951f2fb0956ae48ec1910915 20391 net optional 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64-buildd.buildinfo d18250071f69b6e8eca29f21b2ec78e4 2156488 net optional 389-ds-base_2.3.1+dfsg1-1+deb12u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE9C4sZYDxwNo9XoUDaRWK3AIe28EFAmeVI7IACgkQaRWK3AIe 28EmNw//c89tnnV9psM9W2pO0rk7ahEUSHqNFT0hkhwlJyQF962JHKDLqeiLU7GP 3eAUecnpnCkGt+HJ9LW2L+nCQkcvaYIVxQZ9oozrFVVhTAIWQt/oaeu6CzNvzTqj 2M8ebXzkw3SungfxhYH105EDWIAWsalRGDX5hDuv61f+fCCWtzUOGB8bdUCXwKD7 yJkN1BfCWgVVZ8oF4XS5+vHZMIodabsU/ZXeFOFSdv1Dvdlq3ASzDqgbt4/iww6X G6cYlD9cYvUiztARJkca9i0zQrClX6pHrQDvuKMyfb1WHaaonWKUhZbg1itvU8u7 uVeFEAMkoI++OspWB9s4AeUu8OkqOHtoCqB2mVyxGFFwu8zwlHoMtgDU0taMPz60 wuBIIIfKn9h90O3V7FNYX6hZDW6fkboNdVcx0T6KoYRYev0kxBh5es6D+mWVG45H 9ihEyIIL6/gYxQtjbB7oMXdmq3cRPKV0vjld/9bgkVqDaiz7PNi7F5M2vo40+rBi uFa28q2AR2zWZaIYN6XBj/n8xroGSZTPO+yzqd7R0FVmsPpLUhQ4ikS4WXEMNSJd 9EDhTKntD7NJzGouBTrZ0pGZGN11gIrb0TBsITB8J05FRzvZ6VYZIaj/TEJgiNWW QMtbnA40W0E03mLHtC2qvZwZlwqCYwirw96SRqYlwRT8NDX1rwc= =on7t -----END PGP SIGNATURE-----