-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 25 Dec 2024 21:19:02 +0100 Source: openafs Binary: libafsauthent2 libafsauthent2-dbgsym libafsrpc2 libafsrpc2-dbgsym libkopenafs2 libkopenafs2-dbgsym libopenafs-dev libopenafs-dev-dbgsym openafs-client openafs-client-dbgsym openafs-dbserver openafs-dbserver-dbgsym openafs-fileserver openafs-fileserver-dbgsym openafs-fuse openafs-fuse-dbgsym openafs-krb5 openafs-krb5-dbgsym Architecture: arm64 Version: 1.8.9-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-03) Changed-By: Salvatore Bonaccorso Description: libafsauthent2 - AFS distributed file system runtime library (authentication) libafsrpc2 - AFS distributed file system runtime library (RPC layer) libkopenafs2 - AFS distributed file system runtime library (PAGs) libopenafs-dev - AFS distributed filesystem development libraries openafs-client - AFS distributed filesystem client support openafs-dbserver - AFS distributed filesystem database server openafs-fileserver - AFS distributed filesystem file server openafs-fuse - AFS distributed file system experimental FUSE client openafs-krb5 - AFS distributed filesystem Kerberos 5 integration Closes: 1087406 1087407 Changes: openafs (1.8.9-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * afs: Properly type afs_osi_suser cred arg * Theft of credentials in Unix client PAGs (CVE-2024-10394) (Closes: #1087406, #1087407) * Fileserver crash and possible information leak on StoreACL/FetchACL (CVE-2024-10396) (Closes: #1087406, #1087407) * Preallocated buffer overflows in XDR responses (CVE-2024-10397) (Closes: #1087406, #1087407) Checksums-Sha1: ec25a5d1c3fcb0b9d70962b30f2134778bbc8c0b 407060 libafsauthent2-dbgsym_1.8.9-1+deb12u1_arm64.deb 7a52fe14d1cfa2deb2d24865ec0a6131085a35aa 203712 libafsauthent2_1.8.9-1+deb12u1_arm64.deb 62b9b930a7bba29b97aaef11c54231cf863c91e0 384696 libafsrpc2-dbgsym_1.8.9-1+deb12u1_arm64.deb ae4cffa6bce996a252fd5805b1089d119a034e04 186416 libafsrpc2_1.8.9-1+deb12u1_arm64.deb 3453eaba48cf880a62023fdbad4173fa0645d1bb 7308 libkopenafs2-dbgsym_1.8.9-1+deb12u1_arm64.deb 31a7859c0f35e79436c2017c46636ab5b1c6158c 82240 libkopenafs2_1.8.9-1+deb12u1_arm64.deb 67ceb343b272e9fba9d0d6ac8bb56448b3ece677 77852 libopenafs-dev-dbgsym_1.8.9-1+deb12u1_arm64.deb 8d6a491e3a985e6870d530919e544299ad101ae7 1497428 libopenafs-dev_1.8.9-1+deb12u1_arm64.deb e11963d0d1d02d5c1c7689fafe709e4bfc4eff6e 8050804 openafs-client-dbgsym_1.8.9-1+deb12u1_arm64.deb 270231d175296d6fbfd46dc0969e0db51669ee47 1997368 openafs-client_1.8.9-1+deb12u1_arm64.deb 4803b60a75574a143d8a477eac4500ffee74ee5f 2180152 openafs-dbserver-dbgsym_1.8.9-1+deb12u1_arm64.deb d959b6c6db05e5c6e4d7259fc98737a11898598a 553000 openafs-dbserver_1.8.9-1+deb12u1_arm64.deb 0e4ca80817c398842d9a954da7882369899d60a4 8426028 openafs-fileserver-dbgsym_1.8.9-1+deb12u1_arm64.deb 11025b533b34d130379250185ce89fadf233dcb3 1293752 openafs-fileserver_1.8.9-1+deb12u1_arm64.deb f8cdb6d237fc57ac552d1e1d05409a0715e41ee5 793328 openafs-fuse-dbgsym_1.8.9-1+deb12u1_arm64.deb 15c5ba0213e43385dcb819a86e945962c89bb6ae 261148 openafs-fuse_1.8.9-1+deb12u1_arm64.deb c71f521550ac5ce465bbb72877487f51e5f9aae5 1407400 openafs-krb5-dbgsym_1.8.9-1+deb12u1_arm64.deb c0ed212fb4c8558d85dd58d88286edef3c9c974c 311240 openafs-krb5_1.8.9-1+deb12u1_arm64.deb 2fa8aba816a5446ea4d6c4a3907f0af3758515a7 13327 openafs_1.8.9-1+deb12u1_arm64-buildd.buildinfo Checksums-Sha256: 7280d934f9cb4c97504f6e01ce99c6d9ea0f6d1b343d573b0cd9d9c772b52048 407060 libafsauthent2-dbgsym_1.8.9-1+deb12u1_arm64.deb 7354cea10a1321a7bcd470a93be523fe9e90fdd616631d6e0c50823310c35061 203712 libafsauthent2_1.8.9-1+deb12u1_arm64.deb 9369f033124bea69c48a97f41d321b785345d3fe4d8f45d3cf8ce692e9d7e054 384696 libafsrpc2-dbgsym_1.8.9-1+deb12u1_arm64.deb 673accefd7b984e1120df97480396adba88f2a212a16fbea10ca2fab4f064db1 186416 libafsrpc2_1.8.9-1+deb12u1_arm64.deb f472b419412662be761bd624c81a5eb71dd2b727467225dc8f26b1fe22d81d0a 7308 libkopenafs2-dbgsym_1.8.9-1+deb12u1_arm64.deb e8c71dddb1f3b7c2df13f8dadb6258379022e1b4ecd38039332fce3b37fd5409 82240 libkopenafs2_1.8.9-1+deb12u1_arm64.deb 0a1a62c29ea0357a6bffc5aea2b73a1094e7efefd816410a2d6efcfc260adc6b 77852 libopenafs-dev-dbgsym_1.8.9-1+deb12u1_arm64.deb 6aa22ffd6e0227d079bbcc112727b60a042603a2bdb3e23d5434a9623b94ca83 1497428 libopenafs-dev_1.8.9-1+deb12u1_arm64.deb 8bf420b6934f1791ccc037b711799862742c6cb60e72808f9e53244db0725300 8050804 openafs-client-dbgsym_1.8.9-1+deb12u1_arm64.deb d5a9418e442b49ce063511ba6f2723975d7c4ea30c21af97d5a6a9fcbdc42b5b 1997368 openafs-client_1.8.9-1+deb12u1_arm64.deb 1af33a3eee89c3955e1186cbf665fbc75015507bfe112ed17512de50e1cb1c34 2180152 openafs-dbserver-dbgsym_1.8.9-1+deb12u1_arm64.deb be997d010fd426f11bbc500d6e47aef7603c28afe5059a55c3175880926c7c91 553000 openafs-dbserver_1.8.9-1+deb12u1_arm64.deb 3854bfad34ac5ce9810a97e9f2e615ffd2c9f271d91d6979561951833072639c 8426028 openafs-fileserver-dbgsym_1.8.9-1+deb12u1_arm64.deb ab29e6aa422b4cc4909bb73b6b08bdc6c9f41d38c87d2bb7954460eb595468bd 1293752 openafs-fileserver_1.8.9-1+deb12u1_arm64.deb 5152bfeb3bf2e113879b14b049f3ca8660cadc01d00b92691b85de66c476f8e1 793328 openafs-fuse-dbgsym_1.8.9-1+deb12u1_arm64.deb 9a792bd388d2095ddb2250613e0ca85d06d66e89eaa1f680db141acf3326e4c2 261148 openafs-fuse_1.8.9-1+deb12u1_arm64.deb 2bc5c8627a9b34e45cdae6e8da0fc8cebae2f429fa8e4171e9e5727f2b4c305f 1407400 openafs-krb5-dbgsym_1.8.9-1+deb12u1_arm64.deb e2a041db9e8fcd9ade6d58d8c257ce74766923bd07555200e7853cb418e11aae 311240 openafs-krb5_1.8.9-1+deb12u1_arm64.deb 443c4e6d5653c788a36795f9ef9442bef2466cc27fd1abe40905a51700059a2c 13327 openafs_1.8.9-1+deb12u1_arm64-buildd.buildinfo Files: 2aba76a09111d9f5343302c3101d8e63 407060 debug optional libafsauthent2-dbgsym_1.8.9-1+deb12u1_arm64.deb 6765c02c96fd2cfab5e5b62eb8b566f7 203712 libs optional libafsauthent2_1.8.9-1+deb12u1_arm64.deb 7358c53fc4ce7514dcc861a91fcdf046 384696 debug optional libafsrpc2-dbgsym_1.8.9-1+deb12u1_arm64.deb 48f25f21686534273ccc52e4e37e0677 186416 libs optional libafsrpc2_1.8.9-1+deb12u1_arm64.deb 16d0dbb0fee6f170a60d9f698479078a 7308 debug optional libkopenafs2-dbgsym_1.8.9-1+deb12u1_arm64.deb af0ad912b00bac35e956d1a14ebb6987 82240 libs optional libkopenafs2_1.8.9-1+deb12u1_arm64.deb 527125c5c94886eaf014264409603ac9 77852 debug optional libopenafs-dev-dbgsym_1.8.9-1+deb12u1_arm64.deb 5d12ba127f98f87f14c0499a8aa31a57 1497428 libdevel optional libopenafs-dev_1.8.9-1+deb12u1_arm64.deb 6dc204745ec39aba4d40e8c3c89365cc 8050804 debug optional openafs-client-dbgsym_1.8.9-1+deb12u1_arm64.deb 92888119cbd1bdb0aaec21843e85863b 1997368 net optional openafs-client_1.8.9-1+deb12u1_arm64.deb 4641fd173afc66dd31ba367788bf342e 2180152 debug optional openafs-dbserver-dbgsym_1.8.9-1+deb12u1_arm64.deb 6ca3e06b5550b79cf323b8f664ac432b 553000 net optional openafs-dbserver_1.8.9-1+deb12u1_arm64.deb 30db96ac99c654fd8b096572c06c3ae1 8426028 debug optional openafs-fileserver-dbgsym_1.8.9-1+deb12u1_arm64.deb e7af6e87d04c6f94e3d60d08aa90d7ae 1293752 net optional openafs-fileserver_1.8.9-1+deb12u1_arm64.deb ba7d2cb7480f96bf342d4fae615f219f 793328 debug optional openafs-fuse-dbgsym_1.8.9-1+deb12u1_arm64.deb 0f3564cc96d67fd5938902223ef90f00 261148 net optional openafs-fuse_1.8.9-1+deb12u1_arm64.deb 2051a4af79598e9759d1a48666c0d60b 1407400 debug optional openafs-krb5-dbgsym_1.8.9-1+deb12u1_arm64.deb ad76016ef672eb37fc56604dadc7e3a0 311240 net optional openafs-krb5_1.8.9-1+deb12u1_arm64.deb d4a5ffd5ddeff820f44716a6daf23362 13327 net optional openafs_1.8.9-1+deb12u1_arm64-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE0+FegZ3qs8CHnZkx+XaKpT5fkBIFAmdtaJYACgkQ+XaKpT5f kBIiOQ//Xc6fbgA+6ndqU/pXyyqex8ViIojLsoVW3OfT8zWxC/y2qDzpUmnF8O7/ OOzYgY/pPFsRlb2DRX7auo6q4R3t4DNfoqaNCUJVlPGBoanIphe6EVjgaT3oJ8AA qsKZAMSMPr4qAQ885wH1/JnN9Ztj6GnwTQN9mq+V/hvFLGmXk/CFWdOt1ymQTjZv FMVGOQk2x/pGTCGHAZTdQS/0udIfcW0oPQdxDd2PFc9xNeToR2FUbixHpuLFovKX iIgT2JcO1UjlUa590cDQk0pQI26lWbA1UVkwPWuLN21870cF2s3+IWX+KZgoUV7c xiN9hec1Pa7zPUGXpWXM/sj2npUJb+UwMz9qxvJUH4w9xRuQiQ/PL8y8QQXupLI9 buNiASl02HGQscr1LzBT1Q7pDFzqAuKNqTS5vTGn2Eu2DBsbnfC5X4Lvp3EDJoFd 03wkdn9fmAR8a7BZnYucPVx5PtzonkMsMCnmZn0j/oouJb39W9cQm+kXTHYba2Eu yQ4SQ+ROTVlS0RshMlDdQZzoGse8AHHJt2hYJn4dYDn5GtrOS5SQ1LbwHU4QZPcT 0qYDMU6Zwayzq/bqviooctL0VQPZ4JDUHuMO+ynv/NonT+AkmQIikRlTt+iJpVvC eDM5jbCbZ9lC4dS/TQpPkegJGQqhSiaP+KmoekQa1JS8Yt7SkYg= =b90c -----END PGP SIGNATURE-----