-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 10 Feb 2025 10:07:24 +0100 Source: gnutls28 Binary: gnutls-bin gnutls-bin-dbgsym guile-gnutls guile-gnutls-dbgsym libgnutls-dane0 libgnutls-dane0-dbgsym libgnutls-openssl27 libgnutls-openssl27-dbgsym libgnutls28-dev libgnutls30 libgnutls30-dbgsym libgnutlsxx30 libgnutlsxx30-dbgsym Architecture: armhf Version: 3.7.9-2+deb12u4 Distribution: bookworm-security Urgency: medium Maintainer: arm Build Daemon (arm-conova-01) Changed-By: Andreas Metzler Description: gnutls-bin - GNU TLS library - commandline utilities guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dane0 - GNU TLS library - DANE security support libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx30 - GNU TLS library - C++ runtime library Changes: gnutls28 (3.7.9-2+deb12u4) bookworm-security; urgency=medium . * libgnutls: Fix potential DoS in handling certificates with numerous name constraints, as a follow-up of CVE-2024-12133 in libtasn1. Patch cherry-picked from 3.8.9 release. [GNUTLS-SA-2025-02-07, CVSS: medium] [CVE-2024-12243] Checksums-Sha1: 579f9dd703e3253fa4c1879ac16871a889e797e0 842428 gnutls-bin-dbgsym_3.7.9-2+deb12u4_armhf.deb 806f0d9a21d5daa4440d0a1d9cda754639c69dc0 615428 gnutls-bin_3.7.9-2+deb12u4_armhf.deb 7ae8e20129650e06701b0b0c07634fd00934d816 11142 gnutls28_3.7.9-2+deb12u4_armhf-buildd.buildinfo d8283ba0742b9ae8c7c80410dc76f2af51aa01e7 253748 guile-gnutls-dbgsym_3.7.9-2+deb12u4_armhf.deb 4bf47a262cb75daa6bd09d7a1a4c3288a70022e5 453928 guile-gnutls_3.7.9-2+deb12u4_armhf.deb ff0b1c2e6228d10ab78c6df41474c98236b999e0 90372 libgnutls-dane0-dbgsym_3.7.9-2+deb12u4_armhf.deb 1d210c39ebf84b13f50b5e6eb8eef84f8bca2da4 399880 libgnutls-dane0_3.7.9-2+deb12u4_armhf.deb 2cfdb0d090fae8234843fc5715a3648feb1dfd8a 91652 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u4_armhf.deb 84ec6da786acb5f0f695f33a43bc800a36801d06 399728 libgnutls-openssl27_3.7.9-2+deb12u4_armhf.deb 70e254539fd3866e7dbf073b2129a0bb0709edea 1286948 libgnutls28-dev_3.7.9-2+deb12u4_armhf.deb 927e4ffee1ddd2375bb949309120f081829c20ff 2029832 libgnutls30-dbgsym_3.7.9-2+deb12u4_armhf.deb 7b59c62abbd284330a03af52e26634cb2e511da4 1322136 libgnutls30_3.7.9-2+deb12u4_armhf.deb 85f38494b7517c14f52b1fec827e1a3b8f86cc8c 49360 libgnutlsxx30-dbgsym_3.7.9-2+deb12u4_armhf.deb 3d3a2593cd604e172f622078a3181bf91c36f528 12172 libgnutlsxx30_3.7.9-2+deb12u4_armhf.deb Checksums-Sha256: ff75d27c6b63622dc716a8179c45e9f9365b5633dd2e5454a94b483aba01d3fb 842428 gnutls-bin-dbgsym_3.7.9-2+deb12u4_armhf.deb 69884f69dfca6b0a135179c5b0ac00b910791abffbc3d9161eb4d89653b389fe 615428 gnutls-bin_3.7.9-2+deb12u4_armhf.deb a6ec566ffd32608897dc4e694b87e4f8263c961ad60657c5449605676463ddb0 11142 gnutls28_3.7.9-2+deb12u4_armhf-buildd.buildinfo 1e7ef2844cd1cc8160bd4eec2464999006e5716da6147ae91f87448cf36235d6 253748 guile-gnutls-dbgsym_3.7.9-2+deb12u4_armhf.deb 7cdc55c800fe4064f212f2487245a814d37aec4dde3eb218d845bc830be5c692 453928 guile-gnutls_3.7.9-2+deb12u4_armhf.deb a5cf0d5fb0dbb60bbd014b0512cfa64c884ee7c68746375dce6ed77aba931440 90372 libgnutls-dane0-dbgsym_3.7.9-2+deb12u4_armhf.deb 4a6f854844adeb1c506b52581d2e5157bf694e33a761d530aad8805d8a010129 399880 libgnutls-dane0_3.7.9-2+deb12u4_armhf.deb 4d594bcbc6f8959cc65a65488425d200d7cbd5d2d2f500dd7f474dceefcf9d85 91652 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u4_armhf.deb 9fe358c016da2fe62430d9f17f853b5678e83ae067eb52be47486d720cf8d54c 399728 libgnutls-openssl27_3.7.9-2+deb12u4_armhf.deb 2c7e5457ccae6c264cf284edc9a3fd5fc8f4520ebbb9e5c4844731438a2e7929 1286948 libgnutls28-dev_3.7.9-2+deb12u4_armhf.deb c40660cec01b663ebf17abdaffb883d45489bf29b3c21cd43d00f099f278cc5a 2029832 libgnutls30-dbgsym_3.7.9-2+deb12u4_armhf.deb 0e44dde3b02aa4ea92cfed2b8e23c16c77fa9c94e366f05627d95ea98b01f7cb 1322136 libgnutls30_3.7.9-2+deb12u4_armhf.deb d3db8bcd9d9c54e5dd9343f4610f0ed1971673f02438907a153555131accc6c4 49360 libgnutlsxx30-dbgsym_3.7.9-2+deb12u4_armhf.deb 73d08e1cdd63fe2da9dc868319fb30d57044d8efb3b15de69a45966e9de5da6c 12172 libgnutlsxx30_3.7.9-2+deb12u4_armhf.deb Files: 0cc548880320a23d9bd70953ab606736 842428 debug optional gnutls-bin-dbgsym_3.7.9-2+deb12u4_armhf.deb 6d1a3303d9cac2ccf9a850a5ef1f6d82 615428 net optional gnutls-bin_3.7.9-2+deb12u4_armhf.deb 1545618297309fba5b138619d00b22c6 11142 libs optional gnutls28_3.7.9-2+deb12u4_armhf-buildd.buildinfo a60904b289a60c30527f7510b9918276 253748 debug optional guile-gnutls-dbgsym_3.7.9-2+deb12u4_armhf.deb 9208b504528be2ff4ca95a0232d50c6b 453928 lisp optional guile-gnutls_3.7.9-2+deb12u4_armhf.deb a88baa7b693a0cdc19809b75e9e5f586 90372 debug optional libgnutls-dane0-dbgsym_3.7.9-2+deb12u4_armhf.deb e210e9bfed02eec6baa514fa6a9cf367 399880 libs optional libgnutls-dane0_3.7.9-2+deb12u4_armhf.deb 8e3cf208f4a1b94091a8a13aa2ed20b2 91652 debug optional libgnutls-openssl27-dbgsym_3.7.9-2+deb12u4_armhf.deb 881e221b0206b3374fdf59c0535108f8 399728 libs optional libgnutls-openssl27_3.7.9-2+deb12u4_armhf.deb e875a3992bafd006d71e669a743a0967 1286948 libdevel optional libgnutls28-dev_3.7.9-2+deb12u4_armhf.deb c4e42ee3c2ab435c41578723d4f51b47 2029832 debug optional libgnutls30-dbgsym_3.7.9-2+deb12u4_armhf.deb f1c8416a1576420a21f851010da90617 1322136 libs optional libgnutls30_3.7.9-2+deb12u4_armhf.deb b1d302b0769d3b1d2fb7571f29142663 49360 debug optional libgnutlsxx30-dbgsym_3.7.9-2+deb12u4_armhf.deb e7e2602f5624fd096b42c499597fa57a 12172 libs optional libgnutlsxx30_3.7.9-2+deb12u4_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEegRwmIwj8f99iF4m4CwlMGxHD8UFAmetA+AACgkQ4CwlMGxH D8Vszw/6A6UCOeWsuv1Nihi4v81A3VtQgNqIWppOfshzqsin8p9sa7Wc1OZTES4Q Q/CzCYHBzOtLEq2h+7APlYCnafOgI8qYR3pxvusSNrvaNLKfSLuFHY95HDq3u0V5 Lh9YWEfB+NZFfEHTzrZ+wAGkvHLCdv/2ZGJi5Lc7boNSshltOVVxzep+pbOY7DtI s8dRHCoZqUkrQCV5xoEI3k36AXYMGOwSMj9xL/9J6zOaN2d71ShnTDLf8JQXNfGN GtWClkRTogir2bZrhnUH4sqcH45eYGLYi5la7NCVdTXQUsNJmibi0qdls0jTbHEa SLE70wxB2Kn+EP9D9GhXFc4MxUq8Oa3u1WSoe0GwFJJf960hdhbP9mDAVDvTdZHx PGuUuClgf8VHj3Rr+VSxR480ZGR8xkX5khJUpRTo0RT+P3n+qKYjrzqUQ9pRYxyW UU+v0FY0JkmmTNNn4/xMBYoT+X2QQ7mtoDRN4Jf/T6MOxSpv6TAbH3GaxVpyc6FA anGbGEt1q3BhXJXKDx7WZDlN3TGekuwuQkkRg9ijU5umtTRfZcAgScDF0ViagjWz rWYSKF8I/CT4BmUp5nEmJf/5KwYdOvNxBhmztuc4WxL/SQBtVzT6uqErOsBAUMjg D3LFsC3G0x63GrQmtzNb0jAMdjp48Hmna62UnA7/3x0bWNCwZbU= =dNlH -----END PGP SIGNATURE-----