-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 May 2023 23:30:44 +0200 Source: openssl Binary: libcrypto1.1-udeb libssl-dev libssl1.1 libssl1.1-dbgsym libssl1.1-udeb openssl openssl-dbgsym Architecture: arm64 Version: 1.1.1n-0+deb11u5 Distribution: bullseye-security Urgency: medium Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Sebastian Andrzej Siewior Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Closes: 1034720 Changes: openssl (1.1.1n-0+deb11u5) bullseye-security; urgency=medium . * CVE-2023-0464 (Excessive Resource Usage Verifying X.509 Policy Constraints) (Closes: #1034720). * CVE-2023-0465 (Invalid certificate policies in leaf certificates are silently ignored). * CVE-2023-0466 (Certificate policy check not enabled). * Alternative fix for CVE-2022-4304 (Timing Oracle in RSA Decryption). * CVE-2023-2650 (Possible DoS translating ASN.1 object identifiers). Checksums-Sha1: 07fb0fa301e466353c4bde46dd3744cb2e618e88 957524 libcrypto1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb 170bcd66ba741fee471d0bce07a6d4ac0d0e45f6 1697016 libssl-dev_1.1.1n-0+deb11u5_arm64.deb fc563b56931b9c08f47d1beed6c51b8b0ec89b90 2908632 libssl1.1-dbgsym_1.1.1n-0+deb11u5_arm64.deb 0e625e0162ad078ca7c39d83a0d100922ccf46da 175024 libssl1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb 18fa5958d8df7eeb2d29b66a47b12f5ef270f332 1389856 libssl1.1_1.1.1n-0+deb11u5_arm64.deb 14a548225f36b76c202eed357cb5ff03936333f0 554736 openssl-dbgsym_1.1.1n-0+deb11u5_arm64.deb 59761b15bbce264269214ec9278cd39ba3140769 7663 openssl_1.1.1n-0+deb11u5_arm64-buildd.buildinfo b8ccfbece0f4049f5b1bd1d0658f0780a74a9015 831824 openssl_1.1.1n-0+deb11u5_arm64.deb Checksums-Sha256: 75f6d1b6ff3da65641adff0e8bc92cc77236a33f04bed35da622f2f2e21cd576 957524 libcrypto1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb cabafabca043fc341f6e47d47a997c4f9c462af54b9dc11c8899de738ae18251 1697016 libssl-dev_1.1.1n-0+deb11u5_arm64.deb b584eeb7d790a4a779172d8bd5f5acca50df793a724a9c91d7da7dabea47838e 2908632 libssl1.1-dbgsym_1.1.1n-0+deb11u5_arm64.deb 74a526a98f6097701b2d1bf2453cf0ce14147051945d52f9297d86f98d748bac 175024 libssl1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb 19a0ab710daef6bc1ac411f61c596e380bd79335b5d52d7d60c1a50154461a84 1389856 libssl1.1_1.1.1n-0+deb11u5_arm64.deb 26bfb17a9e4895f5050c3cd20a71909f7047eedb6ef57fe9b63c2ba977a1f882 554736 openssl-dbgsym_1.1.1n-0+deb11u5_arm64.deb 3e60a1eda41aad648e0c2aa8d1740310e92b45964c8e162fc89ccae3bbc04bcf 7663 openssl_1.1.1n-0+deb11u5_arm64-buildd.buildinfo d6fb022b1fcb30cb7e385560274d544661a8fef144188bec2d4d9f7513ff6fb2 831824 openssl_1.1.1n-0+deb11u5_arm64.deb Files: 440c7b05b3876598597a753e807d930d 957524 debian-installer optional libcrypto1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb df7573c2910395d161cafeab27a6a4da 1697016 libdevel optional libssl-dev_1.1.1n-0+deb11u5_arm64.deb ae108e7b5d5755f1831ee662e54040c6 2908632 debug optional libssl1.1-dbgsym_1.1.1n-0+deb11u5_arm64.deb ac68e568e8dc567af1d6a56cf9bca1d4 175024 debian-installer optional libssl1.1-udeb_1.1.1n-0+deb11u5_arm64.udeb eb80de1e79c0dec03688c00d7f77d06b 1389856 libs optional libssl1.1_1.1.1n-0+deb11u5_arm64.deb 4aaeb0617c425d21db2a3ac52fdb2417 554736 debug optional openssl-dbgsym_1.1.1n-0+deb11u5_arm64.deb 3d0648e97239a607fc2b14c2dfde0c73 7663 utils optional openssl_1.1.1n-0+deb11u5_arm64-buildd.buildinfo a7d0e58e9e9e19f233a72727ceecdf24 831824 utils optional openssl_1.1.1n-0+deb11u5_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEUCZhpX7EW6FhRngRD7xMY/mIqXMFAmR0jJ4ACgkQD7xMY/mI qXOZexAAjoS8j6kq1FcZE2A4asMpZc79GBDEBkYnv3YNG9GCp09xivZzmF2mkWKa O8Nh5r6Fu0uRdDG8lGWa6Bji8VW0goatibG5ZjP0mphGG6cDBmhAPEGgxZ0Q2lmH IBc1dfGRjPugmSDRqkJq0eVRjS1+gHTj7KKfUILZEppE9c0guJSjxm1/9raFLGfk Yp5tLpj3XEI8oLU+61r6mtT7nB0p2yAiVmJDQOmCOZSMVDR7wSzZVGeQLRnJo/LE sWPCXEq0cr1sFk5mcBGIW5N3CGLUbtU5bxko5Kj8ewfO6HBeTJ3URl7++mte94Mz cVI9Zx9IDUEN/XyZyKlw9XEG71ufFM6Eji/kfurWwAeD6wAGsw0Lg9Z6POjKo79/ IHoC38c/wjZ1V4bsZm7GVmikS87VJjd6gh4IRJXnN57htquOXnTiY1Y5RDpht6+u Lh9H1Ks0m3EWUwLQZ6VMJgT5slexXi6CKfNi1XW8S+6K1Au5zxcuGr7RLwLYKoO1 EKQ1qV4rEhZ1hpLGVzlp6Q7tB5lWNGNazi7BpMYq2WkRFsD8StLXvWAoVFnUEOE3 +TaNFUaRIAWJju3Sz0SA6e37fGSKusttLehzxAggYil+IhYDuVBWM88I2m78fjm9 mOCwjhP0uixCp3GSRDSr7ika1zT3on2/NqIp79sNba98AjFI2DI= =vSEH -----END PGP SIGNATURE-----