-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 25 Dec 2024 21:19:02 +0100 Source: openafs Binary: libafsauthent2 libafsauthent2-dbgsym libafsrpc2 libafsrpc2-dbgsym libkopenafs2 libkopenafs2-dbgsym libopenafs-dev libopenafs-dev-dbgsym openafs-client openafs-client-dbgsym openafs-dbserver openafs-dbserver-dbgsym openafs-fileserver openafs-fileserver-dbgsym openafs-fuse openafs-fuse-dbgsym openafs-krb5 openafs-krb5-dbgsym Architecture: armel Version: 1.8.9-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Salvatore Bonaccorso Description: libafsauthent2 - AFS distributed file system runtime library (authentication) libafsrpc2 - AFS distributed file system runtime library (RPC layer) libkopenafs2 - AFS distributed file system runtime library (PAGs) libopenafs-dev - AFS distributed filesystem development libraries openafs-client - AFS distributed filesystem client support openafs-dbserver - AFS distributed filesystem database server openafs-fileserver - AFS distributed filesystem file server openafs-fuse - AFS distributed file system experimental FUSE client openafs-krb5 - AFS distributed filesystem Kerberos 5 integration Closes: 1087406 1087407 Changes: openafs (1.8.9-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * afs: Properly type afs_osi_suser cred arg * Theft of credentials in Unix client PAGs (CVE-2024-10394) (Closes: #1087406, #1087407) * Fileserver crash and possible information leak on StoreACL/FetchACL (CVE-2024-10396) (Closes: #1087406, #1087407) * Preallocated buffer overflows in XDR responses (CVE-2024-10397) (Closes: #1087406, #1087407) Checksums-Sha1: 5ce3720baaf68bec50490057a387fc273f677be9 442340 libafsauthent2-dbgsym_1.8.9-1+deb12u1_armel.deb 548936555499ed58d77c9d8fbb6aafbef3a10464 204272 libafsauthent2_1.8.9-1+deb12u1_armel.deb 195b8382fa96b0dc6b7f713e282755814f33eeda 400056 libafsrpc2-dbgsym_1.8.9-1+deb12u1_armel.deb abec59a31c5932ecf1c092958a4375edff9017dd 184748 libafsrpc2_1.8.9-1+deb12u1_armel.deb 2f3a85c26708f968d1eb846fe00b4dced13d71a8 7516 libkopenafs2-dbgsym_1.8.9-1+deb12u1_armel.deb 582d22453445068cef404ce1eac00ff087609ca4 81916 libkopenafs2_1.8.9-1+deb12u1_armel.deb 52ea46237fbd2bf2fb002d532c7ec50513a37a59 89116 libopenafs-dev-dbgsym_1.8.9-1+deb12u1_armel.deb df519228b1fc29a5e9aaca1b9e451e4b7d4ac0ea 1508676 libopenafs-dev_1.8.9-1+deb12u1_armel.deb fb66f7fbd93957806bcf1163812d0e6b3e292dc9 7971812 openafs-client-dbgsym_1.8.9-1+deb12u1_armel.deb 77f5fe0c5bb7785d9906f51036a1b1f2ccc82cb0 1874676 openafs-client_1.8.9-1+deb12u1_armel.deb 07ae7785060ee2534444c1e097991e50f6589da1 2229344 openafs-dbserver-dbgsym_1.8.9-1+deb12u1_armel.deb 107bba74b4bf44dfc0a87e3c82dd1b5257e9b8d7 547524 openafs-dbserver_1.8.9-1+deb12u1_armel.deb 7d38151c2686c3b16b5b0ca6853b2ea1c33acd40 8482160 openafs-fileserver-dbgsym_1.8.9-1+deb12u1_armel.deb a889454e78ed2286b4006307c3b1fca2bda9b9ec 1167276 openafs-fileserver_1.8.9-1+deb12u1_armel.deb a549405dca15f41afca3ec747e98602409bd86ed 894808 openafs-fuse-dbgsym_1.8.9-1+deb12u1_armel.deb e3d05d8a0eec1e937a13817bfe90c9c7a987f2df 276196 openafs-fuse_1.8.9-1+deb12u1_armel.deb ee2e573a4de0e5ab41cc398c786cfa77a52bb083 1430452 openafs-krb5-dbgsym_1.8.9-1+deb12u1_armel.deb 2869993d0e1051f9886d995027a9fc3a71ddb38c 297040 openafs-krb5_1.8.9-1+deb12u1_armel.deb 6e21a96384b17cc349452386888bed5b91138cc5 13201 openafs_1.8.9-1+deb12u1_armel-buildd.buildinfo Checksums-Sha256: e8da0c1a5a84f0185faf74a06e6d106f501b2489d97f5ed8748e5bfa69fe1e64 442340 libafsauthent2-dbgsym_1.8.9-1+deb12u1_armel.deb 9ee840d3bdc4ca5ca5318d7226f2a6e95e02f47057b225ef1fc373ac9a90e01a 204272 libafsauthent2_1.8.9-1+deb12u1_armel.deb 391df2b853e30645b0ae0530449c78cee212cbf1e5827f19afa3706c17da076f 400056 libafsrpc2-dbgsym_1.8.9-1+deb12u1_armel.deb b6bd17491b05cabbfa97c9e6732b51403b09839160687703e3431c580cfb2533 184748 libafsrpc2_1.8.9-1+deb12u1_armel.deb ee72aa2bbe74fa56413374828817277da6e031e3d63d167600e3ac5b11a58d47 7516 libkopenafs2-dbgsym_1.8.9-1+deb12u1_armel.deb 662e1a9bbd733fbca045b9e26096844b705b3a7187ae59792c8cf4e6dd1fc4fa 81916 libkopenafs2_1.8.9-1+deb12u1_armel.deb ccd1688ba86aed305d5780ced54c27b8879e7b4b992441cc5b7bb1e6607c0692 89116 libopenafs-dev-dbgsym_1.8.9-1+deb12u1_armel.deb dec6c470375bc94e30f53ca509f753300733f59c13f19600e7bbf28c1a736973 1508676 libopenafs-dev_1.8.9-1+deb12u1_armel.deb a82bd18a3cdadaf0efbb996ab472c25940a819fa83b90139269981d1e41f34a5 7971812 openafs-client-dbgsym_1.8.9-1+deb12u1_armel.deb ae3f1d227c30faedc17cae4cb57a2632af3ecb9017a6f870a530113f6e99d7c4 1874676 openafs-client_1.8.9-1+deb12u1_armel.deb a19df67a0c0493489463ca1413f7eca538464a6260e7043c55041d3a6f5df55a 2229344 openafs-dbserver-dbgsym_1.8.9-1+deb12u1_armel.deb f7f82f2753157c5a994629172b5f3a2266a9e7db4c63fb75f416131a9c1f1e49 547524 openafs-dbserver_1.8.9-1+deb12u1_armel.deb 1462ab87c5ab6c5072a43b7ecc9fc3d4c12a4950960f258e8282b4cfd1edf7e8 8482160 openafs-fileserver-dbgsym_1.8.9-1+deb12u1_armel.deb 4341493762e5738b12f85a362320532f99a97137d7b8e334d8efe72a00b4ed16 1167276 openafs-fileserver_1.8.9-1+deb12u1_armel.deb bffe680e097a73e3aa19f745a3969cb291a9f42aebc5cc79eab8cbe6eafd9574 894808 openafs-fuse-dbgsym_1.8.9-1+deb12u1_armel.deb cbb9f586507152f92e75cd62b48639a4c9a6ec790869965575eb90d16fbd7b27 276196 openafs-fuse_1.8.9-1+deb12u1_armel.deb fb3c6490cc7bc2a3cfbbdad084d872ebbd3b7ba433f5f1c8f89729b5254af84f 1430452 openafs-krb5-dbgsym_1.8.9-1+deb12u1_armel.deb a7e8493903ff0062d8e6b977ca1911024815b30bcfba03188ad50aac5ffa5e1f 297040 openafs-krb5_1.8.9-1+deb12u1_armel.deb af6189fc358283bd4c1ef9fc29dc36deb9e300367d6d4080af9f397904e1cce0 13201 openafs_1.8.9-1+deb12u1_armel-buildd.buildinfo Files: 4661ac2a374a56237280feae68bcf971 442340 debug optional libafsauthent2-dbgsym_1.8.9-1+deb12u1_armel.deb 305775511ef68a15cab9db3e8e053cdf 204272 libs optional libafsauthent2_1.8.9-1+deb12u1_armel.deb bd33a1234b71f537ce29b27903aaf414 400056 debug optional libafsrpc2-dbgsym_1.8.9-1+deb12u1_armel.deb a655e0bd7d7512a2c100adcde24743ea 184748 libs optional libafsrpc2_1.8.9-1+deb12u1_armel.deb a8ba060506cf22190a520447ffb570dc 7516 debug optional libkopenafs2-dbgsym_1.8.9-1+deb12u1_armel.deb 12807b290b3ec18d258d12e81bcf6923 81916 libs optional libkopenafs2_1.8.9-1+deb12u1_armel.deb 7497d12dcff13082e24da5038dc9fe92 89116 debug optional libopenafs-dev-dbgsym_1.8.9-1+deb12u1_armel.deb 7ec9936edc537f8588d38b7c93a68643 1508676 libdevel optional libopenafs-dev_1.8.9-1+deb12u1_armel.deb 1c733d6d41650db68b70211154e0a445 7971812 debug optional openafs-client-dbgsym_1.8.9-1+deb12u1_armel.deb c37c7a2f024f3e52e4518d38b744a799 1874676 net optional openafs-client_1.8.9-1+deb12u1_armel.deb f165918486621fe051306ac33b099d3e 2229344 debug optional openafs-dbserver-dbgsym_1.8.9-1+deb12u1_armel.deb 0bd8d6ff45136d694eb9720e06fd04b0 547524 net optional openafs-dbserver_1.8.9-1+deb12u1_armel.deb 5dd735d4983f079aec871a72433aca0a 8482160 debug optional openafs-fileserver-dbgsym_1.8.9-1+deb12u1_armel.deb d1ebade17c2304e66fb4b1406456106a 1167276 net optional openafs-fileserver_1.8.9-1+deb12u1_armel.deb 0a7ce2fd251c1f5b3d1d3cf7523f33ae 894808 debug optional openafs-fuse-dbgsym_1.8.9-1+deb12u1_armel.deb b70837a47134db7c02e2110a1872c009 276196 net optional openafs-fuse_1.8.9-1+deb12u1_armel.deb c158b1c555cfd23abf650b7cf8e76330 1430452 debug optional openafs-krb5-dbgsym_1.8.9-1+deb12u1_armel.deb e42016d2c775ce141e8d77c857c3af17 297040 net optional openafs-krb5_1.8.9-1+deb12u1_armel.deb 11a72a081eeaaba42a47d950ab44652d 13201 net optional openafs_1.8.9-1+deb12u1_armel-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE6s8UzO+WAx8RRAOV80lOEvgzuSsFAmdtaQ8ACgkQ80lOEvgz uSsrkQ//Vx6iamMy8Xy34cb5fwyBxEYsFQE48Lg2AkaGhzKDSYQ1EWAt2l6tBhmJ IPS/2Y686xrUhm4QLnuFoLLoU/Y5HK6gSdNxT5RW9w0k+NN/ACrv4kMTnTroLQ7O J088Kw+rkc0tLc+QI2NbIKWVOPaM5mJknyXqL6r0SBdbJU1epDrwjK8zualzkFX2 0ouFUR1rqfCzEmSAjcNASiGnuuvt3qeYR5S5UMN3dLdVqtKTDQRbPqzzZ27yzYbh 5lBeYDT9Q4ieNoLd6g2HOz3CATvpnlc3gNxR5+7Z2+GFF/Ll9CJaOULVYT6geKWi j/Lgu+5mvKE6PWz2ncrOsj/NkWfu9Eygt9DU0vMbunEOFJHMJTykuWMjBKxGMZNf ITNwlxY0Jy6ZlY0VRfJVOtPYieYVMRzMBJs/LpjyLLYJwimNvmC0Clg+SeN/b3A4 vc5M7a30ckF8O7sV/A93Elq5T0jAWXyr44xaPfvj3fLnpEAFDDiQlvu7TPPQwT0P jSMTrpsK6uX+NeZEKqEirPSgQp0DG/DRoeXyia7E9KyYT+9kvJNrmwGPOQy7xLbZ GS5zrFCdyDB2Bko9lslfKLLDc3199JVeDbHSQu32BjS0MvrQfXvKj5o0NVdtnt/X Z75skelJEp5k47V6ADHWRYGwsURXnlg+uQez0DSsY9//emwgNtI= =XglD -----END PGP SIGNATURE-----