-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 May 2024 13:50:11 +0100 Source: glib2.0 Binary: libglib2.0-0 libglib2.0-0-dbgsym libglib2.0-bin libglib2.0-bin-dbgsym libglib2.0-dev libglib2.0-dev-bin libglib2.0-dev-bin-dbgsym libglib2.0-tests libglib2.0-tests-dbgsym libglib2.0-udeb Architecture: i386 Version: 2.66.8-1+deb11u2 Distribution: bullseye-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Simon McVittie Description: libglib2.0-0 - GLib library of C routines libglib2.0-bin - Programs for the GLib library libglib2.0-dev - Development files for the GLib library libglib2.0-dev-bin - Development utilities for the GLib library libglib2.0-tests - GLib library of C routines - installed tests libglib2.0-udeb - GLib library of C routines - minimal runtime (udeb) Changes: glib2.0 (2.66.8-1+deb11u2) bullseye-security; urgency=high . * d/patches: Backport GDBus fixes from 2.80.1 - If local users send signals on the D-Bus system bus that spoof a trusted sender, do not deliver them to signal subscriptions for the trusted sender's well-known bus name (CVE-2024-34397) - Fix a use-after-free when subscribing to signals with an arg0 match rule, originally from 2.79.0 and necessary to make the test for CVE-2024-34397 pass reliably - Add a local backport of g_set_str(), required by the above Checksums-Sha1: 84ab4be4c5431ead0836af53cd6350d10d5934c4 11378 glib2.0_2.66.8-1+deb11u2_i386-buildd.buildinfo c43e42c45b6752f1d1642e0226f897727144e73c 3117236 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_i386.deb 446fc27260567b36ff7e611ad0ce5f4d702ed424 1443892 libglib2.0-0_2.66.8-1+deb11u2_i386.deb 0b3761bc892253f35544ad6e45e7a1851a1432a0 114760 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 71208d05512322bdd856c89c1fb3fff62340cf00 145728 libglib2.0-bin_2.66.8-1+deb11u2_i386.deb e5ce9559a3da2cd418eccd5cb2d6e69015764626 52516 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 2235f8a06370e2ef2b0a602b6599a136e1faf94e 181252 libglib2.0-dev-bin_2.66.8-1+deb11u2_i386.deb 3bc8e4f956b8ca6c8a6cde3d151705d558f4e650 1694016 libglib2.0-dev_2.66.8-1+deb11u2_i386.deb 78b7ec40632967fbf30299bc84b678f77be5c842 3243376 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_i386.deb 52f2c6cb0c00521afa17ff9b47dbb9a34e289710 1491544 libglib2.0-tests_2.66.8-1+deb11u2_i386.deb b0a05a2f62fcc32e470b072a4201c2fccd8256af 2240896 libglib2.0-udeb_2.66.8-1+deb11u2_i386.udeb Checksums-Sha256: 67345e19e5bab36fd490676939136da7eb1df605b2e73ab34fc844c4c4070bec 11378 glib2.0_2.66.8-1+deb11u2_i386-buildd.buildinfo 9f9aaa0b3c9ec69b97f315cb49adadf20646d4da9acfeacabd3bde6d9b2f7cd2 3117236 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_i386.deb 546401ea1401995074e84f501a02421c32112e5f74c71570e87d97987129f9ac 1443892 libglib2.0-0_2.66.8-1+deb11u2_i386.deb b7de68db504c5ecef0a86fa2f3d5bb0c874c45e724bd4ae96e01af6b4d60f198 114760 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 2f5e1a0439a4c6bc7b4e8d0734de4da8e5f9cb47f4d25123e5e3bebf8521163a 145728 libglib2.0-bin_2.66.8-1+deb11u2_i386.deb b096e801683cf6d42d51badcf02d42090b0606619520743669edc8ab12bb4067 52516 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 29dc37cb1eed1dde6ceb88fbff4cd97e59045fe60a7422b694dcf33ab6e3c213 181252 libglib2.0-dev-bin_2.66.8-1+deb11u2_i386.deb 1abf0775cc05f08efafebb15665a5f3c1d5dcac4a37b1c692d95dd16ae1176f6 1694016 libglib2.0-dev_2.66.8-1+deb11u2_i386.deb 879c3fe27b5a205c99fbe3ca30fe72f21097c5c724a825d7482761fb7d9fb1ff 3243376 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_i386.deb e31d86849dffb65aa8a846e7cfac62423f1b96aa4d7cdd25fb54a809182d5df4 1491544 libglib2.0-tests_2.66.8-1+deb11u2_i386.deb 6c2ca0b594ce1c676b7bebe42aae7765c6ba87bedda029de80a81d91f0b67547 2240896 libglib2.0-udeb_2.66.8-1+deb11u2_i386.udeb Files: ec3fc46c0c8a6fdf25c7ed4e5af41a2b 11378 libs optional glib2.0_2.66.8-1+deb11u2_i386-buildd.buildinfo b5abc1560ef7f6a025bc37474d5802dd 3117236 debug optional libglib2.0-0-dbgsym_2.66.8-1+deb11u2_i386.deb 87612731b4c6bbabf838280871fd42ed 1443892 libs optional libglib2.0-0_2.66.8-1+deb11u2_i386.deb 89f7a050c272d3ff2d4d91a01a849536 114760 debug optional libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 37103f36daa4caee0a15dea30511abc8 145728 misc optional libglib2.0-bin_2.66.8-1+deb11u2_i386.deb c9d752e6ffd9808f28928b67031de1d0 52516 debug optional libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_i386.deb 264dc285b8427b1c7caf39721ac07dea 181252 libdevel optional libglib2.0-dev-bin_2.66.8-1+deb11u2_i386.deb 69808b154f87b87c605499bb3287324c 1694016 libdevel optional libglib2.0-dev_2.66.8-1+deb11u2_i386.deb e742630a3bc36930d740063cfb9e6803 3243376 debug optional libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_i386.deb 133dd12335da3cc76b2e079db564c4de 1491544 libs optional libglib2.0-tests_2.66.8-1+deb11u2_i386.deb 757c12b588eae239f736923655ca096e 2240896 debian-installer optional libglib2.0-udeb_2.66.8-1+deb11u2_i386.udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEyTfXx8sBpQ0Lh3cUU9a0/LcaTpMFAmY6OpkACgkQU9a0/Lca TpOlAA/+K4QKoiG5VeVevSWhduq4pprKkrXEDdtgs3Hm67WPXGa3nLV4LPZnP91G n+Ym3nbIOPk5D6b44prGtW+9mTbu9cefPDszhTu7xnBkAsORfPe0LNX4bz4028sn FaR1ACDTFtFMA/G/z/ZPqGQkj2jWWTtb5wORkO031gjOoEadqNRSUjmxwhTG4G3B Mi728bm/NaqSRSom1X7qU9Rgto3+YVMyVX4lK6x8NXQMfarKsqd/GRswW1Cb3MNx tNWij2W5U7fsOY1KrwZs1PWRkSRpWafB4+f67QWkeuDlBh1m7vXlZrzjamqmo0FA B3q+FessPwILIGZbnbQ1COfcV6pL/u7QZtL1tD7jdT/iyphE8pP48O60behTk20r 6jHr18bIYXxBVLA9xAz+1KAWnwx78BmStrDat4jS5aAfAAnFvnAVhyKxVqNx7tUs jHj3u0t8w3/5LTeoZDJ2Pn6XGF89mbU9QdrUs4g1KYQC6SwzaU0Do5o6zqFqOvG3 lPVZ0B3mkByUjFiPz4rkLLUJSK3VpUHS/TKB7XA6bzV/9dzWrtXR+pLRQRPp3l+M jQUAYAbEqe3ysarcwbl78l9EMwxiyaSxbqnhm2txzv4RIIhQTuj477lYzY+6izw5 3ST4qDoK+EAY8dCXV1GC5UE4cMqzXWlsN8z49btH4q41FFqV0mQ= =BI2K -----END PGP SIGNATURE-----