-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 30 Apr 2024 23:57:11 +0200 Source: glibc Binary: libc-bin libc-bin-dbgsym libc-dev-bin libc-dev-bin-dbgsym libc-devtools libc-devtools-dbgsym libc6 libc6-dbg libc6-dev libc6-dev-i386 libc6-dev-x32 libc6-i386 libc6-i386-dbgsym libc6-udeb libc6-x32 libc6-x32-dbgsym locales-all nscd nscd-dbgsym Architecture: amd64 Version: 2.31-13+deb11u10 Distribution: bullseye-security Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-02) Changed-By: Aurelien Jarno Description: libc-bin - GNU C Library: Binaries libc-dev-bin - GNU C Library: Development binaries libc-devtools - GNU C Library: Development tools libc6 - GNU C Library: Shared libraries libc6-dbg - GNU C Library: detached debugging symbols libc6-dev - GNU C Library: Development Libraries and Header Files libc6-dev-i386 - GNU C Library: 32-bit development libraries for AMD64 libc6-dev-x32 - GNU C Library: X32 ABI Development Libraries for AMD64 libc6-i386 - GNU C Library: 32-bit shared libraries for AMD64 libc6-udeb - GNU C Library: Shared libraries - udeb (udeb) libc6-x32 - GNU C Library: X32 ABI Shared libraries for AMD64 locales-all - GNU C Library: Precompiled locale data nscd - GNU C Library: Name Service Cache Daemon Changes: glibc (2.31-13+deb11u10) bullseye-security; urgency=medium . * debian/patches/local-CVE-2024-33599-nscd.patch: Fix a stack-based buffer overflow in nscd netgroup cache (CVE-2024-33599). * debian/patches/local-CVE-2024-33600-nscd.patch: Fix a null pointer dereferences in nscd after failed netgroup cache insertion (CVE-2024-33600). * debian/patches/any/local-CVE-2024-33601-33602-nscd.patch: Fix a DoS in nscd in case of memory allocation failure (CVE-2024-33601) and a memory corruption in nscd when the underlying NSS callback function does not use the buffer space to store all strings (CVE-2024-33602). Checksums-Sha1: 6336ec05f8265f5e277b85c7ee89492a70556c8a 14684 glibc_2.31-13+deb11u10_amd64-buildd.buildinfo daf3f97e772e93fb69b06d54cecaca21885b1eb0 1850656 libc-bin-dbgsym_2.31-13+deb11u10_amd64.deb 9784a5b93dad4f2081dfe8d6cc433285aa5e57be 827000 libc-bin_2.31-13+deb11u10_amd64.deb 2501f070d2c2be0d21a4e211567e30c6963c8499 113572 libc-dev-bin-dbgsym_2.31-13+deb11u10_amd64.deb 710133be0568ca8e51570b88ff25f577011f9e0a 276320 libc-dev-bin_2.31-13+deb11u10_amd64.deb 28037adb60a0f8e056d527d456e2725854029819 42048 libc-devtools-dbgsym_2.31-13+deb11u10_amd64.deb ce66ad43d99244c10b05cd3eaba11ebef7ee812d 246392 libc-devtools_2.31-13+deb11u10_amd64.deb 3fc55f3691757806fd51937f9f779f7028aa2f9e 7538040 libc6-dbg_2.31-13+deb11u10_amd64.deb df582fa24e3740137e27ef1ea724347dc99627fa 1839620 libc6-dev-i386_2.31-13+deb11u10_amd64.deb 9672bb8f471a41a1285a901c8ed37e537c76a80b 1949472 libc6-dev-x32_2.31-13+deb11u10_amd64.deb 388c58f42adebc8a19c04bb385f383ebcd816cbb 2361532 libc6-dev_2.31-13+deb11u10_amd64.deb abd6bd18aecf628d809ce1374a13b7b53345c499 6431256 libc6-i386-dbgsym_2.31-13+deb11u10_amd64.deb 80bd196f9576c7645cd25ab28a485e93ab90d63b 2616036 libc6-i386_2.31-13+deb11u10_amd64.deb a3e48e5e7b63446d9633985a7d99716de34691a0 1275496 libc6-udeb_2.31-13+deb11u10_amd64.udeb 748ed5a6bea589921c138a4b3161ea0f506282d5 6776224 libc6-x32-dbgsym_2.31-13+deb11u10_amd64.deb 343427bcb6325e4cf6fade109b46b5e84ae9fd57 2677600 libc6-x32_2.31-13+deb11u10_amd64.deb 16a04eff91587bd72db32ab4c6e836d53c55f2cb 2824616 libc6_2.31-13+deb11u10_amd64.deb f6e45f3d1186efeb1316dbd4960aac65d5071add 10753628 locales-all_2.31-13+deb11u10_amd64.deb d27dd664ec6eb65ce9abf3582874a7cfc83ccc97 237052 nscd-dbgsym_2.31-13+deb11u10_amd64.deb b74abbcadaf2056b563052409556c121d983676c 290848 nscd_2.31-13+deb11u10_amd64.deb Checksums-Sha256: d905a1868c22f3d67ee7fef117eb4e73756f5dc5b8182d30cfae26efbefad5b8 14684 glibc_2.31-13+deb11u10_amd64-buildd.buildinfo 0ac951c6ec615c3217b099d26230856ab370b2c75b755e2ee2dc51b08b77c345 1850656 libc-bin-dbgsym_2.31-13+deb11u10_amd64.deb 97b46cbab917965b2dcc1afaea1c26477e6c856e69ad29d0cb51dd0a198bfc1f 827000 libc-bin_2.31-13+deb11u10_amd64.deb ce8f871d9c77682b808072fb51f03d428f15cf8cb5c07a85b213833cdb850e46 113572 libc-dev-bin-dbgsym_2.31-13+deb11u10_amd64.deb d52fc7b4843096bf23f888ae95131af11628dfd13946c004a10c6beb954e666e 276320 libc-dev-bin_2.31-13+deb11u10_amd64.deb 0d6a8537bd70fb1d8159c7f975eb55772d1aa57b94c2948e48d944d4913d8f63 42048 libc-devtools-dbgsym_2.31-13+deb11u10_amd64.deb 9799490801e91c4d707add68ae8c409bdd8896cc4af0e3594729c063c4131ae9 246392 libc-devtools_2.31-13+deb11u10_amd64.deb 3371c4632c44e8e0e90b131d7e69b51efc2954a60375bb11c46941ed29428db2 7538040 libc6-dbg_2.31-13+deb11u10_amd64.deb 58f1abe075d8baaa5744f55bb7af70247a32a915d42fde7a64940ca17d62eb66 1839620 libc6-dev-i386_2.31-13+deb11u10_amd64.deb 0e30a7bc28b89b8ead216d57306ccae1b9ee18c20a54c268711621e8d372599b 1949472 libc6-dev-x32_2.31-13+deb11u10_amd64.deb a326ade1e1a2763012d8eb86f93702374ede357881e157edbd69be9a39a4af2e 2361532 libc6-dev_2.31-13+deb11u10_amd64.deb 54036c2bf625f59c7d41851304e21c1ec7587a86e425937c41bed3ac0887e7b8 6431256 libc6-i386-dbgsym_2.31-13+deb11u10_amd64.deb 288e5fce00051ac3cee335a5cff0268c8f9bd9f0d3dd075a19f7d61c1553b33e 2616036 libc6-i386_2.31-13+deb11u10_amd64.deb 755bb287354a94c56af5a9b70a11f616941faf241ac94174d8595b0a4e0d0b57 1275496 libc6-udeb_2.31-13+deb11u10_amd64.udeb ab035160d24b8c312cca5d6b0db9e45fff8fddd6f275fed2406b207f72b0cf22 6776224 libc6-x32-dbgsym_2.31-13+deb11u10_amd64.deb a56c9ef0e5af1e495cd0beac0d78200cf487b988737664f21a4784c2ebf2fb9e 2677600 libc6-x32_2.31-13+deb11u10_amd64.deb 387b0ff08147f8bd9d83dfe9db0e4d39fef5f6d29700297acdd6a5711eb981a7 2824616 libc6_2.31-13+deb11u10_amd64.deb 96a3bc7a28e3cdd894dda6deccfd194a3558c463a126dc11370a876943f0dfc1 10753628 locales-all_2.31-13+deb11u10_amd64.deb c3ef308006705dc772acad9619c57f08f2138db6e5cfd94930c817648582cd2a 237052 nscd-dbgsym_2.31-13+deb11u10_amd64.deb cc44ef66cbdc48d7754f3193530b2116593b90e120deec05e8ea45ada06ebcd8 290848 nscd_2.31-13+deb11u10_amd64.deb Files: a0f228fb3dc0795af4fdd2999a8b1f58 14684 libs required glibc_2.31-13+deb11u10_amd64-buildd.buildinfo 1256647cadd163a1418f126e7eda537f 1850656 debug optional libc-bin-dbgsym_2.31-13+deb11u10_amd64.deb bd88bb447c71e73d601793d1dda9f1d8 827000 libs required libc-bin_2.31-13+deb11u10_amd64.deb 71ce6993a03d98396fc03b5adeee3024 113572 debug optional libc-dev-bin-dbgsym_2.31-13+deb11u10_amd64.deb e40b03b2be995045e76629ca7e5b9edb 276320 libdevel optional libc-dev-bin_2.31-13+deb11u10_amd64.deb 832f53d70b5bbf2751883749232334e3 42048 debug optional libc-devtools-dbgsym_2.31-13+deb11u10_amd64.deb 25aefb386cae0bc57d5e15abf41b55d3 246392 devel optional libc-devtools_2.31-13+deb11u10_amd64.deb dc4d60b30c38364383acf811d5d4b554 7538040 debug optional libc6-dbg_2.31-13+deb11u10_amd64.deb da28ae88d6b35289952a93ce7e01b166 1839620 libdevel optional libc6-dev-i386_2.31-13+deb11u10_amd64.deb c60d2debc5b0f95942efd46cdfaa9b4e 1949472 libdevel optional libc6-dev-x32_2.31-13+deb11u10_amd64.deb aeeced9372b5d4a9280dbfb2ec9bb6a9 2361532 libdevel optional libc6-dev_2.31-13+deb11u10_amd64.deb 585b733743df9832a319ff0fa15aa91f 6431256 debug optional libc6-i386-dbgsym_2.31-13+deb11u10_amd64.deb 5baeb4d46e18926e3ca5929f90712320 2616036 libs optional libc6-i386_2.31-13+deb11u10_amd64.deb 7f035bc8691f8f33ed9ee263df2c2620 1275496 debian-installer optional libc6-udeb_2.31-13+deb11u10_amd64.udeb a6576a5ef27225f91c89568b94f64e17 6776224 debug optional libc6-x32-dbgsym_2.31-13+deb11u10_amd64.deb a401cf4254e1bab46ca6b497133cf409 2677600 libs optional libc6-x32_2.31-13+deb11u10_amd64.deb 46552bd54f27eae9f8f9e45dcdb0ba15 2824616 libs optional libc6_2.31-13+deb11u10_amd64.deb e81196a4b26a8f04ab6fca75666d95a8 10753628 localization optional locales-all_2.31-13+deb11u10_amd64.deb 3cce0140e6358785df0d8493c53e8999 237052 debug optional nscd-dbgsym_2.31-13+deb11u10_amd64.deb b445c7adecf7a930a3224d65d27e975c 290848 admin optional nscd_2.31-13+deb11u10_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErEDrIdpJkzFMm6K+PyQET5WCY90FAmYxeb0ACgkQPyQET5WC Y91BXBAAh0Qc7Qu8QBd3XKsBywyFdX3kp7ZJlQT70OS13yo/GbJt4emlhlTOWzo7 wPWy5F6iAspR/3NzPEfKgyqll+S8yFAQw0CcE4cje1WBxqtDORC/rTgN42rjW8Z7 zKqK0DyRPLn90ao+pWWcprrEj6i2xmpM/Dw8buVeB3JKQR5XVZkFywZSJXl9F59V W3xyOpOSTUWtMplvBkgd8C8lX5nrBrYsCGYhzQoDq5kUGm+8PTqf/wlIJ6DdeElk o5OBSZ8CuWASvNnzNTdETOKjPPpERLauDFai+BmgfjFspD6kBm8huOrGsAsGqQ4g VR2fKUGQEAZM2/Mq+486eSvqWvl22QIU3uwaoNnPTJLKbP8NkTxvsLrRBEgTm+jY 1S5PR4drHMbunPbj1xvr4WSKjTqRLYkcpO49D4ZccegI9H97YCJ/HlymDUHD019B NT497rGsa9ME9rV4RV4N95gJ5I5BRGJC04BplP7mq/6prIDR0f5srIlEXIVvhlUk 7DU3pwtWRloXSn+u9qd5xp+lN2iJaDhZhoojNkNgVfE7Tl3JH7R1SGKfbAD+WyrF OLifDgwVX51UvL02xGZwQH79nqcB+klekmF4dInioGIG/QiTA6943F8A93cK1UAa u0iLz/qQceu2OSvdxTP9y7AK0y7iVHGNY6inqTgOlHTt3h5ugTY= =GTrU -----END PGP SIGNATURE-----