-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 29 Aug 2021 19:03:02 +0200 Source: squashfs-tools Binary: squashfs-tools squashfs-tools-dbgsym Architecture: ppc64el Version: 1:4.4-2+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-unicamp-01) Changed-By: Thorsten Alteholz Description: squashfs-tools - Tool to create and append to squashfs filesystems Changes: squashfs-tools (1:4.4-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2021-40153 unsquashfs unvalidated filepaths allow writing outside of destination. Checksums-Sha1: 65b0430133464ef863510fb23bcc9ccedeeeb408 401968 squashfs-tools-dbgsym_4.4-2+deb11u1_ppc64el.deb 7b405df7f3fb391de92c40f0209128118b5f99af 5948 squashfs-tools_4.4-2+deb11u1_ppc64el-buildd.buildinfo 7eac9c1e4b2c6287e2a2c7d878a6dbf2ee0b3877 146560 squashfs-tools_4.4-2+deb11u1_ppc64el.deb Checksums-Sha256: ee67874e782cfd4350b07efb6c1ed75fad72eb6f59861b0e6847527d20f06170 401968 squashfs-tools-dbgsym_4.4-2+deb11u1_ppc64el.deb 4f3a79a059000e2ede545e18618bc7946269cdf04c8bbde4833b97fca8ff29b2 5948 squashfs-tools_4.4-2+deb11u1_ppc64el-buildd.buildinfo b8f95fc76dff76b44dd8e5d7cea1d51c8e52ce0a5618f9016b124020c0d23a73 146560 squashfs-tools_4.4-2+deb11u1_ppc64el.deb Files: 9e002877e00bceed0f35c0f0a6460e76 401968 debug optional squashfs-tools-dbgsym_4.4-2+deb11u1_ppc64el.deb 389af853e1474d2699f23ee1c693ef2b 5948 kernel optional squashfs-tools_4.4-2+deb11u1_ppc64el-buildd.buildinfo 1fde1044af85d406073f5bae96d120ff 146560 kernel optional squashfs-tools_4.4-2+deb11u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKzbeWucQH7PwwtgznSwNtUaaPI8FAmEzGZUACgkQnSwNtUaa PI+IzQ//dpTPRUjhZ2JGIzQIZMwQ047cfNao8k4meaLYopPWeVU1FltaIfSj95X2 vDeIN1vK+arvPPmWdA1cbFZsP6A8jso+0tSiLs9SKOOzm4GOwwPs7RuxL3qVNCag ZF7Y1555UFWjXkuZCCktZJLUC26GyCwBqmdo4ziKjpRMPtLzrVON8M9MZR0RngzK kBcQxeKsGQUeCE2NT/kqjek6boQY5COuzgoTt3D2RqhLIaPciV0T2Jmtw1GNShqg 8kMhdknplJ9n6U1vf0BQgTsHzKSr04Zxbz/2olW0iLN6cazHwSX9QqgPXigyEyf4 G8QVUYYqqOeyu2SRUVxEZaqIC/D3kx0hHDNSG55DlvblxldpH9smBynoYT/Pkx+S c2nf8VJ74Cu8AAt+/8MO0ZWPJ0VVvNTL1ayopQeUIkVn11J+w6t1LKhY99cXl+D6 s4dCIhAX3N2oYcn4tvNMevJglmdtdY13fHow9OpqGySNAoLV73Jdg01pWlYmGuaf 2oKDU82tWPZrsJwrgDJxS3FWvbhnisPL7JWq9GL0k9fOf2xrzwQ19dISA43A/UXA 9fU/rYdMa0SxGaKovh2oFEHmSUmazT4EQC+MMBzkTaHvn0zgE8hjmT3v3q5CFPj0 tKzDr7PEeCj/ZXf5RaHtht+kKAYHauhOWGHgKiwLSmMEa6q8X4Y= =uYq2 -----END PGP SIGNATURE-----