-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 22 May 2026 14:56:30 +0200 Source: haveged Binary: haveged haveged-dbgsym haveged-udeb libhavege-dev libhavege2 libhavege2-dbgsym Architecture: i386 Version: 1.9.14-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Salvatore Bonaccorso Description: haveged - Linux entropy source using the HAVEGE algorithm haveged-udeb - Linux entropy source using the HAVEGE algorithm -- udeb (udeb) libhavege-dev - entropy source using the HAVEGE algorithm - development files libhavege2 - entropy source using the HAVEGE algorithm - shared library Closes: 1137096 Changes: haveged (1.9.14-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix privilege escalation via command socket (CVE-2026-41054) (Closes: #1137096) * Check peer credentials before reading command (CVE-2026-41054) Checksums-Sha1: 885fae97f1fcc1ce0c60cdbc0aee42142bc50129 25704 haveged-dbgsym_1.9.14-1+deb12u1_i386.deb 7855a6537b7f5866e6ce0bfcddbd3ca794d25d88 30008 haveged-udeb_1.9.14-1+deb12u1_i386.udeb 916368347d02f16a7317ee13aad34d9a601d5055 7381 haveged_1.9.14-1+deb12u1_i386-buildd.buildinfo 0f034bbc42c161d64cba2d1849b5651a68d0b163 37520 haveged_1.9.14-1+deb12u1_i386.deb d1638e3fe6d221432dcafa1a4e5cfea7885f086b 37704 libhavege-dev_1.9.14-1+deb12u1_i386.deb a53771669933178593ae8fb4158f14d71eb28d58 78512 libhavege2-dbgsym_1.9.14-1+deb12u1_i386.deb 7133341943522797963f3c489e7e228514ba4521 27140 libhavege2_1.9.14-1+deb12u1_i386.deb Checksums-Sha256: f62151f42aa10abbd1bb6552ca8a6bdb807436249ff49f6dbfcf627999d41030 25704 haveged-dbgsym_1.9.14-1+deb12u1_i386.deb 35e247578ee591412c2379abc71c41e0dbe328f676dc8506e4ab98be0b27673f 30008 haveged-udeb_1.9.14-1+deb12u1_i386.udeb b6f8d0582ac22111df6ea3fe0d8469b5431796a84b24fa5cedecff5cd9433a3d 7381 haveged_1.9.14-1+deb12u1_i386-buildd.buildinfo 067e465c1eb65d15116bd9e5ebc8e1f8572e834d4f9665e033af75f9e4272691 37520 haveged_1.9.14-1+deb12u1_i386.deb 44519e4ddbb6474b855fb429456a8c539eb06643f3484de5c3035b6d5ea2fb09 37704 libhavege-dev_1.9.14-1+deb12u1_i386.deb 7bb52164a4cd26b6f2084dd62f6bdd01a2ee8ffda6ee1cc982baeb653b0aebab 78512 libhavege2-dbgsym_1.9.14-1+deb12u1_i386.deb fd52d4cbd0e36bae5fadf58af254bf82e5607994df4202f038d6a3a714151284 27140 libhavege2_1.9.14-1+deb12u1_i386.deb Files: a345cb975c5bf5d008a2d2b8b79c611b 25704 debug optional haveged-dbgsym_1.9.14-1+deb12u1_i386.deb 800e2efeaabc7da80d3315fd9de02636 30008 debian-installer optional haveged-udeb_1.9.14-1+deb12u1_i386.udeb 3a6d1d828a243fcb7671b456cd4ad3d0 7381 misc optional haveged_1.9.14-1+deb12u1_i386-buildd.buildinfo f58b182d9776826db9cd63aae9c4d8f7 37520 misc optional haveged_1.9.14-1+deb12u1_i386.deb 2190d2518a0ea7895eb07807572b2f0b 37704 libdevel optional libhavege-dev_1.9.14-1+deb12u1_i386.deb 7d197d19c6d67e2037f15ea2d2dd5a32 78512 debug optional libhavege2-dbgsym_1.9.14-1+deb12u1_i386.deb 56ea5c4033aa4b2cab737a49a9fed05e 27140 libs optional libhavege2_1.9.14-1+deb12u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEb5EwsJvHBEjqIJYIbheoBegwXLIFAmoQZYMACgkQbheoBegw XLIXPQ/9E3xngPJg/EYwaDGSQo/IMdqADAmvlARy3AEee/E340ket/40Vz+dyfFH r1el051DJdk10Vuol7zljBHUcy0Kf2tmTNDWrnN3dr3lt9jtg75xEkU8otRwQNjX a7bER05VSoaWfBYONkB5K4bBaycjOGIhTn5hP+XpAaF0gc5u6eXfEvjLcgpd+D+B JHVibZ223JWyF2FW4Njo9HHOqXKGGWqt2dF//i5pW5smGgo0ISjX2YqaUNMKUMhQ fpbgNWythB4ZEEyvgH7mwpUy0G/9sr/6Bgzl7gMcxcUTsYENNHk1e80atVBky5QH 2vmpoJ5pHLD2ZIZ0mM8o4qlHadKSaLmD+yRZH5wM44WsymBGSVweKR/MWbJGChUQ YApysSLzsBvXthn2q9hKrsG8jzxN6875zUSgSL1nQSHaP1+FSH65bKOPyvftiFC9 K8iGQ9e7ROMBxG+4e0y+sH6EtyLcoQkWCXLUq2M9bs07qRVxb87GWCMOn4PNW+cB OKi2psHUyLgu6ZTg7BKZJadQQPm+sbctWMrfwAzY8XFMZjs9+aTHofb8FHXmDBZ9 f/+cVadmQn2PdMFRpvx0OvoN55Mq7v7X5DEJ5EZpg3Ud/Apjluw29bWk2unMAv5s JNmDKOqFnwphsPjPtO+nX7GG6qjqzVaRwreDF391Srd9FIRKdqM= =RU6S -----END PGP SIGNATURE-----