-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 May 2024 13:50:11 +0100 Source: glib2.0 Binary: libglib2.0-0 libglib2.0-0-dbgsym libglib2.0-bin libglib2.0-bin-dbgsym libglib2.0-dev libglib2.0-dev-bin libglib2.0-dev-bin-dbgsym libglib2.0-tests libglib2.0-tests-dbgsym libglib2.0-udeb Architecture: amd64 Version: 2.66.8-1+deb11u2 Distribution: bullseye-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Simon McVittie Description: libglib2.0-0 - GLib library of C routines libglib2.0-bin - Programs for the GLib library libglib2.0-dev - Development files for the GLib library libglib2.0-dev-bin - Development utilities for the GLib library libglib2.0-tests - GLib library of C routines - installed tests libglib2.0-udeb - GLib library of C routines - minimal runtime (udeb) Changes: glib2.0 (2.66.8-1+deb11u2) bullseye-security; urgency=high . * d/patches: Backport GDBus fixes from 2.80.1 - If local users send signals on the D-Bus system bus that spoof a trusted sender, do not deliver them to signal subscriptions for the trusted sender's well-known bus name (CVE-2024-34397) - Fix a use-after-free when subscribing to signals with an arg0 match rule, originally from 2.79.0 and necessary to make the test for CVE-2024-34397 pass reliably - Add a local backport of g_set_str(), required by the above Checksums-Sha1: 829a4cea0453909b10ec49d66909aafe673bad39 11447 glib2.0_2.66.8-1+deb11u2_amd64-buildd.buildinfo 3f51c581bb06f069a52fe4da27705da8343cc498 3894984 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_amd64.deb 6a64a28e82ecc754263a2a01b533af44270934cd 1376536 libglib2.0-0_2.66.8-1+deb11u2_amd64.deb 49f01c895d13202c42fccc9a8b94f9fcf1a7037d 135852 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb f5043dc07bdc6d213f3e8137562b5f41c3d7f47f 142024 libglib2.0-bin_2.66.8-1+deb11u2_amd64.deb 894fc7645b03e2ac6aea151267cf751a70790f37 59216 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb d2817e53a308ecf38bce0db8d6715acf127dccf1 180732 libglib2.0-dev-bin_2.66.8-1+deb11u2_amd64.deb db6071dc3708ae51781f7b9dd36d2fc96def9042 1582692 libglib2.0-dev_2.66.8-1+deb11u2_amd64.deb 8c36bd4beddd434ef5747b7933bff10560d40fb4 4072960 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_amd64.deb 1b88f741b2fe1ddc45b656834b380d9e405aaf5a 1589432 libglib2.0-tests_2.66.8-1+deb11u2_amd64.deb f4d5f577ab5f6639d23609982e80bc4aa2203e92 2185364 libglib2.0-udeb_2.66.8-1+deb11u2_amd64.udeb Checksums-Sha256: 1d69cb7647ac40d5e40c1724fc27dc17ca1b2d0d733a0fee0754c87048e81c98 11447 glib2.0_2.66.8-1+deb11u2_amd64-buildd.buildinfo c9b702181f817a41204bcc3a1fda185ddea7d9effdc1e869ede1c47ea3bbdf89 3894984 libglib2.0-0-dbgsym_2.66.8-1+deb11u2_amd64.deb dc30acd9a1e06c14e5f0d0ad2d2af0f0bb9a050adeb2f23ac47bf07f409827a0 1376536 libglib2.0-0_2.66.8-1+deb11u2_amd64.deb 2c198d57c19271d7c9b02cb94d8485e992b9a599c63c15c890cbd67d5afc4da1 135852 libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb 11d67ba1dbed6edcaa9109fce13f2e846c14a6a224a38dd3423b74e68d72781d 142024 libglib2.0-bin_2.66.8-1+deb11u2_amd64.deb 566bc7ae983ebda7fdd274818c2fdf3c767fe3a1f0a3071f2401e2403d267a91 59216 libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb c2105b6ffdf663a760fe3d35768e658cc7cd0267dd9bf664006906cf845887f7 180732 libglib2.0-dev-bin_2.66.8-1+deb11u2_amd64.deb 5e2a3d9781003713443ee0acab85ae62eb2f3034005a3313e350c50912aa2bdc 1582692 libglib2.0-dev_2.66.8-1+deb11u2_amd64.deb 77ad09af44abc50a7963246483d4d045bd8ff2af70e60581e75e633060a7eb23 4072960 libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_amd64.deb 3785840c563f9dcbc50cd692e138ce9eb8d9699516f236609a1151f09fb4c58c 1589432 libglib2.0-tests_2.66.8-1+deb11u2_amd64.deb dc1c106476648094d4aef49a38549c934f50ef7656f3a5360e5147e4d78d281c 2185364 libglib2.0-udeb_2.66.8-1+deb11u2_amd64.udeb Files: 3b0f1dcdb4652c786493201b64d5c2ec 11447 libs optional glib2.0_2.66.8-1+deb11u2_amd64-buildd.buildinfo 5c53042f3d6cb81ff1d3cd88f89afbaa 3894984 debug optional libglib2.0-0-dbgsym_2.66.8-1+deb11u2_amd64.deb f962ad7e59942192b45510b68ab20801 1376536 libs optional libglib2.0-0_2.66.8-1+deb11u2_amd64.deb 36c74636c36b62f9428d4bbd5560f8d5 135852 debug optional libglib2.0-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb 038bba6897ec2344e794a59720c5b491 142024 misc optional libglib2.0-bin_2.66.8-1+deb11u2_amd64.deb 880f02e6a3f676d81f9795119a373a1a 59216 debug optional libglib2.0-dev-bin-dbgsym_2.66.8-1+deb11u2_amd64.deb b6f21460fe466360a9aa3db0c84a1cbb 180732 libdevel optional libglib2.0-dev-bin_2.66.8-1+deb11u2_amd64.deb 7a1214a2840cb5e7b6aaef03dc3a92aa 1582692 libdevel optional libglib2.0-dev_2.66.8-1+deb11u2_amd64.deb bf18a0a066c1423ba6cdb16c0c6441e7 4072960 debug optional libglib2.0-tests-dbgsym_2.66.8-1+deb11u2_amd64.deb 778d13a410ca773644481ed57cc60b2a 1589432 libs optional libglib2.0-tests_2.66.8-1+deb11u2_amd64.deb 2fe70b7ca7496f245f64676052cf2c94 2185364 debian-installer optional libglib2.0-udeb_2.66.8-1+deb11u2_amd64.udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvy6d65NNYPbL6IQIEQ1nooK/IAQFAmY6OnAACgkQEQ1nooK/ IATMRg//aPXpON3qLBZsDKrtoTm5g/ukSivzAuTZZiMKAMmcWDZRtP18urPCNBwt R/Ql7OvDKQ/tVKXegQnCV4rDLJztxDHxjHHDhlPP70oWwu1mmHW5wDYUEXnnsiw9 zdxFnbkLbPxeURZ3tl07cu4HvlVwVxboxBKpQBUVlekSBfNKg+Ia/CCtc1Wrhn2f yLxSvv8vYIjNbeculetS1xg2o0Avar6yCcnzgx4dLXkO73KX2UpQb8uicHN9qYfx HJ8ujAj6vFaFpQdrWfe1UGUJWZ8LsqMFD668nhopzBwm8bP0G2FUYKMQmf2r47WG aIlR2bdE/AM/e0PcfcrX8hiCPFTpuwuUg2GejPSqKfdXmf4laE8fM+3kJFh4J3Fn fVUxIbTOkinkNmjBSyZBjT9wv3siSvNTRX0lYd0CkJ1oGyxvDKqT/Mj9oIQeAaAm 9ycM7Ya4BrUHs46LvtTnpWnT3srapAubTeAxn54H9sM60U3ewPTSYqx0Nl7e03/1 OrXJ5ANsqIp4Ao265+Vyr0stAnuRtg0VUk5E75ka40pq2XmotcOxVO82/7jjG5wJ Gboq4738/oxigPAFO/sZAdXFNydL/VCn2djIwaBg4OKIkmeKobfjKrAAKpdev13Y OvBWtAivpXLnbqluGYSpXWORiV9HBRJ9T6AKnKtw0Y+SSEph8Fc= =jlI8 -----END PGP SIGNATURE-----