-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 May 2023 23:30:44 +0200 Source: openssl Binary: libcrypto1.1-udeb libssl-dev libssl1.1 libssl1.1-dbgsym libssl1.1-udeb openssl openssl-dbgsym Architecture: armel Version: 1.1.1n-0+deb11u5 Distribution: bullseye-security Urgency: medium Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Sebastian Andrzej Siewior Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Closes: 1034720 Changes: openssl (1.1.1n-0+deb11u5) bullseye-security; urgency=medium . * CVE-2023-0464 (Excessive Resource Usage Verifying X.509 Policy Constraints) (Closes: #1034720). * CVE-2023-0465 (Invalid certificate policies in leaf certificates are silently ignored). * CVE-2023-0466 (Certificate policy check not enabled). * Alternative fix for CVE-2022-4304 (Timing Oracle in RSA Decryption). * CVE-2023-2650 (Possible DoS translating ASN.1 object identifiers). Checksums-Sha1: f5b6f1fae028309fcbc244b79ff73c8d4016ebd2 866556 libcrypto1.1-udeb_1.1.1n-0+deb11u5_armel.udeb 72a74e8680729c2ae9af3dceaea5a879b8dd48c3 1583408 libssl-dev_1.1.1n-0+deb11u5_armel.deb b292e5cdf473cddfd64b188844890b9fee873d45 2780804 libssl1.1-dbgsym_1.1.1n-0+deb11u5_armel.deb 4eef73a1bd9eb8e054be4bf611f7a38d0acff9eb 157384 libssl1.1-udeb_1.1.1n-0+deb11u5_armel.udeb 019c13ea808b8c78b0f6e41bf581d904fc9f61dc 1280400 libssl1.1_1.1.1n-0+deb11u5_armel.deb 0e4fec3d295c8933ac0941b7f16d12435a210908 512584 openssl-dbgsym_1.1.1n-0+deb11u5_armel.deb 1c1b67a70684eb78b39b5c2858e28c5a180db009 7592 openssl_1.1.1n-0+deb11u5_armel-buildd.buildinfo 34f85fc08b2ac44abb3f35e8561e92c9a66c8b29 823332 openssl_1.1.1n-0+deb11u5_armel.deb Checksums-Sha256: c6cfc6714b12cfe382c45185edcc188ed54c37708e6ddaca5362eda53df9b4ec 866556 libcrypto1.1-udeb_1.1.1n-0+deb11u5_armel.udeb 3236e677923dfb4c596614b944f0a31c35a4b707705d9a19500a224bd86015d4 1583408 libssl-dev_1.1.1n-0+deb11u5_armel.deb 09635dc01510fffc8666263d8962512bd85bc08fb47423359396afb7c0fc2f79 2780804 libssl1.1-dbgsym_1.1.1n-0+deb11u5_armel.deb 194627ac83e73c3e3e4b4ff6f311b23f14f4aec9ed722e48f051b73390e0b960 157384 libssl1.1-udeb_1.1.1n-0+deb11u5_armel.udeb 4cc561fec9fa50d8c76e84e6504574e40590ba2b44fdc57238abc37767d4bab3 1280400 libssl1.1_1.1.1n-0+deb11u5_armel.deb f14437f6a413e7505cfa08adf340bcddb888c54d0466fb83b7fe3416c7f4e1ef 512584 openssl-dbgsym_1.1.1n-0+deb11u5_armel.deb 398cef4d65870b0ef284eef639ff1c8f12a9ef9c79ccf0e7c9336802e40c1558 7592 openssl_1.1.1n-0+deb11u5_armel-buildd.buildinfo f1d63aef40e70f92a505b51618e9edbce291f3fdfeb925081e27218285ba5136 823332 openssl_1.1.1n-0+deb11u5_armel.deb Files: 0b269e3433071f18ad0693e1bb873025 866556 debian-installer optional libcrypto1.1-udeb_1.1.1n-0+deb11u5_armel.udeb dee962a67ccd3ea5e05ac7acebc2ac5e 1583408 libdevel optional libssl-dev_1.1.1n-0+deb11u5_armel.deb 7354ae652eb06a702093be566f80f4d7 2780804 debug optional libssl1.1-dbgsym_1.1.1n-0+deb11u5_armel.deb 07bbf649f43ca5efd54d48cf87ac3ddc 157384 debian-installer optional libssl1.1-udeb_1.1.1n-0+deb11u5_armel.udeb 81de5c5630ba50dcc5127ca6c5ab2b25 1280400 libs optional libssl1.1_1.1.1n-0+deb11u5_armel.deb 8d9888cc4088e6d2ba21f0b3b05a9f35 512584 debug optional openssl-dbgsym_1.1.1n-0+deb11u5_armel.deb ebe0e11f7352eda189afb739476d46bd 7592 utils optional openssl_1.1.1n-0+deb11u5_armel-buildd.buildinfo 8b0c42c0906ac4243036a787b000e8a2 823332 utils optional openssl_1.1.1n-0+deb11u5_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEdkvJoTVAIZVYaO9cyYck2apzqqMFAmR0ju8ACgkQyYck2apz qqOFqQ//U+yMbLKDVZV6goJXa7tAS4HIYXT/h7S574GOfsQqs04hYRW77+LLXwBk KVRuspxEUU07Il3FvTzK1hovvSMso9wczpuhD/gDPsAaZOcJ1zSWP3+9JBRTG2oO jSylzbApq2zL4GjG5miUXs0swUkTsTpkKuTaxkRZie04B5JBzW3uW4LUgI8RJCSb jFq/bNFFEkZk7yDUPK2E1QJDGYE4KjnYT0L7CfxqmHgZzw/NlTlJJE6H8NZt6FLi ixveu2HdheIQqAUm61grCVJh/BNClSsT2/aeA8cKaU9jb3gpQaQEFB8BeHZTxRUy V9VDlUd8pabJoygT1UsiTlI8Cz4Qv6xf2ZNHWfQ97HlVGjosXuYhU++y7katR6tv 7koLCDLrhLmhls63OZ+OvqjYy6v4cUU5PT96uH9qEe9/hOLCSu4bma6Ip4VqYW7b 3NX3GVR2B9OACtpmgjYPXV479bAIcYSHeQZRhoG/ae2nV7sIglvabz0aTQ5ogBjs Q8ZgmHrjnSIBvK9VnySgOV7UkrU9+nPNpE2uCuwspASTKEjUlIGSY7u0phOWjHwl ajWpewSYXCwG4T+4tvs96wWOljjd0cn1fJCLxFbzp/23hEoiU5LpMXjDLxdZmEDe d1M2R8BtYoGdfl+DT6nUws/d/8OPThiNqCvJBj/VNLf6rgmrsT0= =kwQg -----END PGP SIGNATURE-----