-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 29 Sep 2023 22:38:02 +0200 Source: exim4 Binary: exim4-base exim4-base-dbgsym exim4-daemon-heavy exim4-daemon-heavy-dbgsym exim4-daemon-light exim4-daemon-light-dbgsym exim4-dev eximon4 eximon4-dbgsym Architecture: i386 Version: 4.96-15+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-02) Changed-By: Salvatore Bonaccorso Description: exim4-base - support files for all Exim MTA (v4) packages exim4-daemon-heavy - Exim MTA (v4) daemon with extended features, including exiscan-ac exim4-daemon-light - lightweight Exim MTA (v4) daemon exim4-dev - header files for the Exim MTA (v4) packages eximon4 - monitor application for the Exim MTA (v4) (X11 interface) Changes: exim4 (4.96-15+deb12u2) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Address external and SPA authenticator vulnerabilities (CVE-2023-42114, CVE-2023-42115, CVE-2023-42116) - Auths: fix possible OOB write in external authenticator (CVE-2023-42115) - Auths: use uschar more in spa authenticator - Auths: fix possible OOB write in SPA authenticator (CVE-2023-42116) - Auths: fix possible OOB read in SPA authenticator (CVE-2023-42114) Checksums-Sha1: 8dc46f6f6cbcfcca0d06b2ac3afc8b3d54b6e2d0 128116 exim4-base-dbgsym_4.96-15+deb12u2_i386.deb a190509082e44941de9862ea7e37c28bd52fc9a6 1116648 exim4-base_4.96-15+deb12u2_i386.deb ad00b811edf3aff5bb83c4bfa20fd5901c4b04cf 1456076 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_i386.deb c22fb4d5bbf93c8d35f55a23563a566c5a94d352 682344 exim4-daemon-heavy_4.96-15+deb12u2_i386.deb f102be755d28f35cf7bb8c4b714d5a3a552951cf 1279248 exim4-daemon-light-dbgsym_4.96-15+deb12u2_i386.deb 7477d82364a4d56a62982e4cbba27173fb854256 621692 exim4-daemon-light_4.96-15+deb12u2_i386.deb 219cf2c23f7551d1fadf02bdf5d57af68139d638 37732 exim4-dev_4.96-15+deb12u2_i386.deb ffdbc4bd7b8c7c7faabc3926479b8827fc522de9 10914 exim4_4.96-15+deb12u2_i386-buildd.buildinfo aaa102ead726494f57c0cef88d47cb5e5a9e71bb 125336 eximon4-dbgsym_4.96-15+deb12u2_i386.deb 2595e5b6a281f0afe231d6607e7b7ba3203cf481 73944 eximon4_4.96-15+deb12u2_i386.deb Checksums-Sha256: dc5ed5017505ff7ea9103ac8b2dbf1e2e74233db45408f9d2724c36249f8df76 128116 exim4-base-dbgsym_4.96-15+deb12u2_i386.deb 33f6f1a7633110d881139b5ae48b5779373c2bac3d0a4a593f73b6cec8cbf5c5 1116648 exim4-base_4.96-15+deb12u2_i386.deb cec5ed9add56919313a390f37976ca400c2bb891bf8f22ce9356cf219f3a14dc 1456076 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_i386.deb cf0bede8e793b16638d620260e0c9fe98b564bd97b11aafc4c8cf4f38577ed73 682344 exim4-daemon-heavy_4.96-15+deb12u2_i386.deb ad0efe08e80852016f7a5b1177b1d6195aad196e1337a1623495e3c61637f131 1279248 exim4-daemon-light-dbgsym_4.96-15+deb12u2_i386.deb c1b7f1337335e29ac2cf190e9ed8ddd5e6fd0e556e43363a999c385ecd78a64d 621692 exim4-daemon-light_4.96-15+deb12u2_i386.deb 1fbfe93b488eda40f4bcbf0cf8f8316c716a2782528a721ef44563a08ee7214b 37732 exim4-dev_4.96-15+deb12u2_i386.deb 5ed8d3a3cede55bf6def85b2cdd7f0f579ef23d111f3578a9d264a85dfedb615 10914 exim4_4.96-15+deb12u2_i386-buildd.buildinfo acd9b6babfbcab36231b5ca1c6003d24fffa2d18ac45c2febb2ead03984aced1 125336 eximon4-dbgsym_4.96-15+deb12u2_i386.deb 0fcdf50725b9ad416c8d51fd5e97cce8b8bb9906e6378647d453d8f22534a807 73944 eximon4_4.96-15+deb12u2_i386.deb Files: ec14e73209ec21f30cd4c4169dc1ac1f 128116 debug optional exim4-base-dbgsym_4.96-15+deb12u2_i386.deb baff212dcd8408fa432b129db7c8c4d0 1116648 mail optional exim4-base_4.96-15+deb12u2_i386.deb abdcfc9e91d51c7684900b0860eb1a9d 1456076 debug optional exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_i386.deb 8aaec2f6258ced961276921f07eb2a8d 682344 mail optional exim4-daemon-heavy_4.96-15+deb12u2_i386.deb bd61182a87b98a4532ab3095ac9cb3b6 1279248 debug optional exim4-daemon-light-dbgsym_4.96-15+deb12u2_i386.deb e7ad8750d639414464914ef67fc03396 621692 mail optional exim4-daemon-light_4.96-15+deb12u2_i386.deb 5f1237d06c6e6445595c52d0d2370ae6 37732 mail optional exim4-dev_4.96-15+deb12u2_i386.deb 820d3c5ff752360884cbf0c2d8837ddd 10914 mail standard exim4_4.96-15+deb12u2_i386-buildd.buildinfo 83a4096b18c37d6a601b4db99b2e1a2a 125336 debug optional eximon4-dbgsym_4.96-15+deb12u2_i386.deb 4c5da52fbbb6b21013bd8ba8ae3a87b0 73944 mail optional eximon4_4.96-15+deb12u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEOtJZa9Q/HRv7PgxxkF7E12VCox0FAmUZyIIACgkQkF7E12VC ox37NQ/9FTCFpf8uYdobOt7Y0rlDRVR2r4e3rKbxwhaj+JfQixvwaNItXn/ug37D 5EM6MeCo8neQQe0xfcyYHM4MPhhFFfhH5VepNpLc2CPNPv62p478X0gGxfhAEqSr WaBbEUmgWu2WO4jiYCJMWzn3WkKxPHuNmn+PF/Op5VLbBLVz1qBcXpUlMf8PpEJz Rwb6k1/01t7fZR+y3qKWvZmekHMAxARwOFiye9A4qnGdUetxesChH4NV8GQ6HFsj SwxlBb9FoTXVQXFZ18lMKOESKHALkWWIF02OtrXOTiQRYIL4/IzTshppl3nTy9dH UMzCV7hAznkD4gCODOz4mI9za+Szo6WHc4G8LagR7QCtB8raKKhzkYbe+2R8WOop AL0SjZ94B2+qy7fd+oy/18JFRS060t0CjsPwL8o5iKjc6iNtuKeE5eLxYNWuMngX HMYr8Nog1ujcEM8TfLWphax5VE4YJXPstu4htwvq26c9DqbLtSdU0fp3iELvnvuY vTeBK09jcU9DHLEGyvAJyU7BtBzbXV8mRPE0mJ6bx0MbSDfikhSaZ87Lgk8IdrhZ U+AKGK7f2EZJMoyd+IkGQDwZ1TZcLnfpun2y3+Etz3p1GlBq/hQEK8RXsuCYquzi 1y7D3kbbSPukTcHquKiAC1Az6qYfzo/5CsrSGscKjb8blr2OpWg= =wfT5 -----END PGP SIGNATURE-----