-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 May 2024 13:50:11 +0100 Source: glib2.0 Binary: libglib2.0-0 libglib2.0-0-dbgsym libglib2.0-bin libglib2.0-bin-dbgsym libglib2.0-dev libglib2.0-dev-bin libglib2.0-dev-bin-dbgsym libglib2.0-tests libglib2.0-tests-dbgsym libglib2.0-udeb Architecture: armhf Version: 2.66.8-1+deb11u2 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-05) Changed-By: Simon McVittie Description: libglib2.0-0 - GLib library of C routines libglib2.0-bin - Programs for the GLib library libglib2.0-dev - Development files for the GLib library libglib2.0-dev-bin - Development utilities for the GLib library libglib2.0-tests - GLib library of C routines - installed tests libglib2.0-udeb - GLib library of C routines - minimal runtime (udeb) Changes: glib2.0 (2.66.8-1+deb11u2) bullseye-security; urgency=high . * d/patches: Backport GDBus fixes from 2.80.1 - If local users send signals on the D-Bus system bus that spoof a trusted sender, do not deliver them to signal subscriptions for the trusted sender's well-known bus name (CVE-2024-34397) - Fix a use-after-free when subscribing to signals with an arg0 match rule, originally from 2.79.0 and necessary to make the test for CVE-2024-34397 pass reliably - Add a local backport of g_set_str(), required by the above Checksums-Sha1: 8f14a855bfc3dc59a419609579ed61a8aa072158 11348 glib2.0_2.66.8-1+deb11u2_armhf-buildd.buildinfo bedfb64706c1cd423ec4263b031614978a4d5099 3724680 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_armhf.deb eda84e6cfc894f78ce98d4817951b2cd62b01263 1213328 libglib2.0-0_2.66.8-1+deb11u2_armhf.deb ede07c9235218454441f4220e4d12cecca36256d 133260 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb 609848adbd5486671acedf04903d0188bc2d0ef2 137268 libglib2.0-bin_2.66.8-1+deb11u2_armhf.deb f3d1411212790f51c6ef31c4b3a4abfddf359311 58200 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb d78e42a6599dac90f4ef5abf4bd8b81ffbb55943 178204 libglib2.0-dev-bin_2.66.8-1+deb11u2_armhf.deb 89d46cd7afeee0dd493a8b781554fbdd7485832e 1477996 libglib2.0-dev_2.66.8-1+deb11u2_armhf.deb 5b9a4677bb2434a51147c3ea23b1316927b88670 4022484 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_armhf.deb 52c97d2a113caaf1346d272e98ccd9d761d72b72 1475276 libglib2.0-tests_2.66.8-1+deb11u2_armhf.deb 06b26f7462ad159d15902fd9097fa214fff3e32c 2014988 libglib2.0-udeb_2.66.8-1+deb11u2_armhf.udeb Checksums-Sha256: 72116aa469f79ab4386711ec9c5b8039e2d34134036dbc70eb1be39d736fd69a 11348 glib2.0_2.66.8-1+deb11u2_armhf-buildd.buildinfo 89b418d0d044f6f58089ddc93a843d89a68a5b727ca931f34ab8d7c57b3dd3ef 3724680 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_armhf.deb 4c3414e65173cfb8369e78035aaa33cf438ecf04a497dfccaca5a4530550baf1 1213328 libglib2.0-0_2.66.8-1+deb11u2_armhf.deb d6e877a11921ddac3ddc1b451722a76fd5af83975082a937acb6659d35b0ee30 133260 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb b6629066498c04c68c619fbf68c3f491d1b39dbbe41f1b82cd83b1f1faa8a6a9 137268 libglib2.0-bin_2.66.8-1+deb11u2_armhf.deb 5e4a384c9d038ff0b1f980d7e4423dca5eccc07743a2bb9a992d08ee0eaf19a7 58200 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb cf2c7b6a1d435149aabba3541ebfb93afe2b7fd4eb4868593dda9d18b74634cc 178204 libglib2.0-dev-bin_2.66.8-1+deb11u2_armhf.deb 2ed99173151bc796b955792630e502ad562045d0052ef5f33ffb41d4c4e0b889 1477996 libglib2.0-dev_2.66.8-1+deb11u2_armhf.deb 4300eb5be13bbc62399b807848b70d5179908f0ee24c8a586b8d822c9d9e2848 4022484 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_armhf.deb 79ed15d0c4222ae5304421c4ab141049aaed45054321dfbe7a4c9793b99bdd3e 1475276 libglib2.0-tests_2.66.8-1+deb11u2_armhf.deb dd306c5fd19885bb21b5955e9902fda2d10890679201adac012b6596542a641d 2014988 libglib2.0-udeb_2.66.8-1+deb11u2_armhf.udeb Files: 6814df9e6acaa7a9cd473af76f62e038 11348 libs optional glib2.0_2.66.8-1+deb11u2_armhf-buildd.buildinfo 5143a2ed35223b489f0709c58bd2e7ad 3724680 debug optional libglib2.0-0-dbgsym_2.66.8-1+deb11u2_armhf.deb a17b631ad501fd703185ba6bdd417380 1213328 libs optional libglib2.0-0_2.66.8-1+deb11u2_armhf.deb 2213cf234ce6844f8ad8d6168c15ba96 133260 debug optional libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb 2103311326a6418ecd07230fccbf4144 137268 misc optional libglib2.0-bin_2.66.8-1+deb11u2_armhf.deb d97d627446c68232bf9df35478661b06 58200 debug optional libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_armhf.deb 65553eae1fa530fcec89b337c6163f6b 178204 libdevel optional libglib2.0-dev-bin_2.66.8-1+deb11u2_armhf.deb 9c546b83735ab1bd6fdcc01a4f7c05a8 1477996 libdevel optional libglib2.0-dev_2.66.8-1+deb11u2_armhf.deb 79a52e5f899fb68876d127b13a10c97f 4022484 debug optional libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_armhf.deb 270938a8d44f6c532148f93ced920e9b 1475276 libs optional libglib2.0-tests_2.66.8-1+deb11u2_armhf.deb e8230a8a850393674fccaaf8394da2f6 2014988 debian-installer optional libglib2.0-udeb_2.66.8-1+deb11u2_armhf.udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEiIhsyZ7bTtoONs0yzW4+LN9obe4FAmY6PZMACgkQzW4+LN9o be4jBA//Tmenikz32JMBPP/ZIhJsOPRugQSoMQVAtlr6qIT1NdRhHPFkexiUDoIe h9DEMIByQYAvMDotGLCAGy9szLvDuj73d1k3rx4/76g7yAZi6+GYqYxZ8N/br8fj uvJILNHNJiFMB6J5FtClLS9kqIiTnQxVc71uATSwID4gMkqgkU3iqDyDtecvZ77Y gVM69KyGutAcJ964fO3YYvgPU0WmSLRKazFQvxj6/zv9/yEYqBvPPThwpoYOeeOM /UcIRhpiKbZb06gkbYwK2+8pdnbNUo80ofBgyCClfngYgodPpuFZfhITDqfiNs1K QN4bQIPBac0c4UephrGiHLFFMyNyUUSU5FpgOCEC3LkMZMUqmiUTnjW0qN5mqYcW pQ4FCEKJEA0/gDjglnC1UUz2msbUAE0GgC1uJM/m92LmQxNYT4RmLPpyOn4EUhKk ccSeePvFbU2zNF6wPgokn0Fh/jGdQ1IjJGbyomb86LXaz70Xq50rDWLM7ncbjUej oDYu5kLzfkwmKdeJthP3l3OikxV76ebk2hTsfluDfCyPEyr/mZ+9BoymXKJVx8Ax w703EOBEo87yYfDRtGEFQHhy3BkcirKAFqZ22oQqJ+sbTvLHJmfYZYR2V6BfRb5B wT4UR/+TOXfZNF8JmHnFgweu2zFpBVl7bs6GLxZXRWdjDNEzLSo= =IbiU -----END PGP SIGNATURE-----