-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 30 Apr 2024 23:07:28 +0200 Source: glibc Binary: libc-bin libc-bin-dbgsym libc-dev-bin libc-dev-bin-dbgsym libc-devtools libc-devtools-dbgsym libc6 libc6-dbg libc6-dev libc6-dev-dbgsym libc6-dev-s390 libc6-s390 libc6-s390-dbgsym libc6-udeb locales-all nscd nscd-dbgsym Architecture: s390x Version: 2.36-9+deb12u7 Distribution: bookworm-security Urgency: medium Maintainer: s390x Build Daemon (zani) Changed-By: Aurelien Jarno Description: libc-bin - GNU C Library: Binaries libc-dev-bin - GNU C Library: Development binaries libc-devtools - GNU C Library: Development tools libc6 - GNU C Library: Shared libraries libc6-dbg - GNU C Library: detached debugging symbols libc6-dev - GNU C Library: Development Libraries and Header Files libc6-dev-s390 - GNU C Library: 32bit Development Libraries for IBM zSeries libc6-s390 - GNU C Library: 32bit Shared libraries for IBM zSeries libc6-udeb - GNU C Library: Shared libraries - udeb (udeb) locales-all - GNU C Library: Precompiled locale data nscd - GNU C Library: Name Service Cache Daemon Changes: glibc (2.36-9+deb12u7) bookworm-security; urgency=medium . * debian/patches/local-CVE-2024-33599-nscd.diff: Fix a stack-based buffer overflow in nscd netgroup cache (CVE-2024-33599). * debian/patches/local-CVE-2024-33600-nscd.diff: Fix a null pointer dereferences in nscd after failed netgroup cache insertion (CVE-2024-33600). * debian/patches/any/local-CVE-2024-33601-33602-nscd.diff: Fix a DoS in nscd in case of memory allocation failure (CVE-2024-33601) and a memory corruption in nscd when the underlying NSS callback function does not use the buffer space to store all strings (CVE-2024-33602). Checksums-Sha1: 101cf0264cd67fc426570a711891ea810a55870d 13859 glibc_2.36-9+deb12u7_s390x-buildd.buildinfo 31000d0b6e4f8295ca375147128f0d7a20f43e1f 2312792 libc-bin-dbgsym_2.36-9+deb12u7_s390x.deb 1b32be71e3257a702bc62dc54a06feea64d2776b 542200 libc-bin_2.36-9+deb12u7_s390x.deb 3ba0754594e393d6fc9cb967470a64c0ab9ba0b6 29096 libc-dev-bin-dbgsym_2.36-9+deb12u7_s390x.deb 846425bdfcd8cd5a920bfb084e6386604a939351 44976 libc-dev-bin_2.36-9+deb12u7_s390x.deb 66edbd880b9df31076b23e747b35eb59537e988c 43252 libc-devtools-dbgsym_2.36-9+deb12u7_s390x.deb bdc45443452a1b99a1b72ae70df11ddae9aa618d 53024 libc-devtools_2.36-9+deb12u7_s390x.deb cc47f087748a840f942acf2e1b7b3e22c1c245f5 7524876 libc6-dbg_2.36-9+deb12u7_s390x.deb 26614ee8dc0ed6aeb16afb2db50ea06a7607072e 15136 libc6-dev-dbgsym_2.36-9+deb12u7_s390x.deb 988df0f522c59e9a84b36b373ed6d27c16e9d63d 1044468 libc6-dev-s390_2.36-9+deb12u7_s390x.deb c26004848d614b698128dce811c02759f15326c2 1403800 libc6-dev_2.36-9+deb12u7_s390x.deb e77f8631a49d80543fa05fd26da00cf6f0c50e37 7877764 libc6-s390-dbgsym_2.36-9+deb12u7_s390x.deb fb5bc391822d154e783e0c8ce42ad9f21f8632f4 2107652 libc6-s390_2.36-9+deb12u7_s390x.deb 9428098ae2f6dc8e62e97b6fce16e24df47a8aa4 908924 libc6-udeb_2.36-9+deb12u7_s390x.udeb d9d13e231d362d696f0f6570a778f01e35ca79b7 2252692 libc6_2.36-9+deb12u7_s390x.deb aa7923e89fbb5ddfda79caae15434a608bac8efc 11018112 locales-all_2.36-9+deb12u7_s390x.deb 9136e9013f7aa19f97ee37798bd38f858b7430e7 269824 nscd-dbgsym_2.36-9+deb12u7_s390x.deb c8d42e027841e125c86ce77124a1e58bfdd737aa 97680 nscd_2.36-9+deb12u7_s390x.deb Checksums-Sha256: 31c4a734ca7cd160b138c76ea7d5790483168de6d971db33163b28a123b63941 13859 glibc_2.36-9+deb12u7_s390x-buildd.buildinfo c2bb3be99429befeec10648acc527a427369b373fcb9c9f8628d1ef818817b54 2312792 libc-bin-dbgsym_2.36-9+deb12u7_s390x.deb 0c0deb29a60c0b2a18c1fbba6780ab27566b8bb32a76413bfcc6d77155b4a7e5 542200 libc-bin_2.36-9+deb12u7_s390x.deb df0e07567054108c9474277d7ebccc065ebcb13eb6767020b79dca47e16e5793 29096 libc-dev-bin-dbgsym_2.36-9+deb12u7_s390x.deb 02d3c5b7e0b127acb2d28017e73f12f2a171b3d64c77ff15a4d5dcd097137ff5 44976 libc-dev-bin_2.36-9+deb12u7_s390x.deb 97f4b72dee2b92ec5e5525dc4fc0c7ac85a98b5a46364919dfbdeefc38a59aae 43252 libc-devtools-dbgsym_2.36-9+deb12u7_s390x.deb 3a781c1ab088460051c4b670ead2d469ba45dbf2337292f7fa0bc4ca2d314f1b 53024 libc-devtools_2.36-9+deb12u7_s390x.deb a6bae8f549ff6da00ef83eecf6456782bd3e02237bc84ca96c22cfd40a1596ca 7524876 libc6-dbg_2.36-9+deb12u7_s390x.deb 5f6dffb1db8568ca30b5d1cee54cf3edce4bde3ebcacff8b6aaa3b7cd1dc1f72 15136 libc6-dev-dbgsym_2.36-9+deb12u7_s390x.deb 2fd5dc92b829038b62dd2315968d001079e14b6010db10d1f7ead59ec8d9603c 1044468 libc6-dev-s390_2.36-9+deb12u7_s390x.deb 57e362bcc0a717ecec7976717f090bc769544401f1e9cdbc98ddedece0d38859 1403800 libc6-dev_2.36-9+deb12u7_s390x.deb 2bdf196eb609962b2adc76dae198f16901a89adb4220c911144223559a0c1e92 7877764 libc6-s390-dbgsym_2.36-9+deb12u7_s390x.deb 656dd4d0d6e1a7117cbe5d495236bb6ef5e7853720f0f17853afb9379c4778e6 2107652 libc6-s390_2.36-9+deb12u7_s390x.deb 7ea8a0f96927f1fcc96a7a0e59863a16fb3b97f72ca16946cfdf787df39407a6 908924 libc6-udeb_2.36-9+deb12u7_s390x.udeb 194f5265a70115331be41c3e15430189f75d71f5d7c075521cac4ee3cfef762b 2252692 libc6_2.36-9+deb12u7_s390x.deb 28892884a71c8233e60699a14b19ab2a24c4803419c6994a572b64a65c4e2533 11018112 locales-all_2.36-9+deb12u7_s390x.deb 617b2e217f0fdd3f54b8c52d5d6e5798bc07bc9401961e265ec12ce9dccf179e 269824 nscd-dbgsym_2.36-9+deb12u7_s390x.deb 7b48c89180f9ac2f5d2500eee6d8c6d9df44657c5b3ee870913d49df2a8f9483 97680 nscd_2.36-9+deb12u7_s390x.deb Files: 8946a2b68b9cec917de0e684376ec441 13859 libs required glibc_2.36-9+deb12u7_s390x-buildd.buildinfo 6e5abdb66c7d828a19e3b94f01320790 2312792 debug optional libc-bin-dbgsym_2.36-9+deb12u7_s390x.deb bdd65dec469a6ebf3f832223b2b0b129 542200 libs required libc-bin_2.36-9+deb12u7_s390x.deb 9cf13c45e3942cae93a869f04602cd27 29096 debug optional libc-dev-bin-dbgsym_2.36-9+deb12u7_s390x.deb c51e96d2363d9f71c3abfe33763a32d5 44976 libdevel optional libc-dev-bin_2.36-9+deb12u7_s390x.deb 76d117d384f1ffccc921c86f9ece41d0 43252 debug optional libc-devtools-dbgsym_2.36-9+deb12u7_s390x.deb 05bdf6ff1397eece1dd01e888f664db5 53024 devel optional libc-devtools_2.36-9+deb12u7_s390x.deb 075e1fa2d458e8a3efa60790f7f878be 7524876 debug optional libc6-dbg_2.36-9+deb12u7_s390x.deb 5cb5d08aac914fa7db3fb4dc7e62fc1e 15136 debug optional libc6-dev-dbgsym_2.36-9+deb12u7_s390x.deb c8b2d3e78ac6d55ba9c7a7a004c104d5 1044468 libdevel optional libc6-dev-s390_2.36-9+deb12u7_s390x.deb f8e00eea57255f8719c7f5fae902136e 1403800 libdevel optional libc6-dev_2.36-9+deb12u7_s390x.deb b1aabd29215908d692009242cf113b3b 7877764 debug optional libc6-s390-dbgsym_2.36-9+deb12u7_s390x.deb 7ce7da549b845366515552b5a03d128a 2107652 libs optional libc6-s390_2.36-9+deb12u7_s390x.deb 2bead1d9aece39f590c8580e228fd8a0 908924 debian-installer optional libc6-udeb_2.36-9+deb12u7_s390x.udeb 92d6b7d2c3f4608759795a0b1f1bc850 2252692 libs optional libc6_2.36-9+deb12u7_s390x.deb 6e75fa045294f58c41dd7c95a3250b22 11018112 localization optional locales-all_2.36-9+deb12u7_s390x.deb dfbee71db6e482f37f665185f64a505b 269824 debug optional nscd-dbgsym_2.36-9+deb12u7_s390x.deb e739d9cc2368a9db36395f8aa5335801 97680 admin optional nscd_2.36-9+deb12u7_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETdQgQHyJW2hcXsTC6b+AMjGgQHgFAmYySOoACgkQ6b+AMjGg QHhT4g//do9zVet9tovIsXaRmke6g8IIvPFUL1/e4qS3HaqUYr5HxedL2JaVKk0j cr1oWVuNTyOTtnTiG8bUUI7qiWb6jlEqW1thjodaD70VA/5S5+fou1F5CAJ7dKol 2cXPrRpC31t5ESixWnlC/JUH4aOEovuWdY204V6VHkkBSitFwhmGlRaZJ/0GU4VH bB+jh/onHWzAY1CkVS+hIkZXXAfmBSwxq2TxKgmifDZMKIXhHBOkGosWqokUH9/c IziUaAVHhYkA2+gH/O0fSDmuwW3/Jp6Ar45XbNbeuf93nYnlmOpL/TMCLz+tBA4d NCq+7m8GI7VOE2BQr+CDqtNeVItNCAiRB1gfZzcKUj/SO/HvWUQMnGeAa0E7zJ8M 7gLNBpj1WH2f7N8DOQkdaqydV0fNKln+8teCk+gsHIXVNn87+4gbi8iS62tHBNnm 7bgCV+NUHBQduokpZ4lWpvGIhohr8m4wsVqQDDZs1YfOQEIEEArocs8pylaRMHMo B1W84Klgwf190VYFHp6D7jF6VMM8aAmlWt1we0Hc8tPCLbL1gHTyDZ4RFtQJWV6p En4Gw8JRhE2BHPsG8IH7Nt3rnu1XMkh23ACRJUTpKcjbGWrS8P5YKoKGMgHvo0q7 96S3n3yf2cY7st0pGZ39krcetoHh3A72nVet/fc5QDpVh2wQQI0= =XsWA -----END PGP SIGNATURE-----