-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 02 Oct 2023 16:11:34 +0200 Source: grub2 Binary: grub-common grub-common-dbgsym grub-efi grub-efi-arm grub-efi-arm-bin grub-efi-arm-dbg grub-mount-udeb grub-theme-starfield grub-uboot grub-uboot-bin grub-uboot-dbg grub2-common grub2-common-dbgsym Architecture: armhf Version: 2.06-3~deb11u6 Distribution: bullseye-security Urgency: medium Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Julian Andres Klode Description: grub-common - GRand Unified Bootloader (common files) grub-efi - GRand Unified Bootloader, version 2 (dummy package) grub-efi-arm - GRand Unified Bootloader, version 2 (ARM UEFI version) grub-efi-arm-bin - GRand Unified Bootloader, version 2 (ARM UEFI modules) grub-efi-arm-dbg - GRand Unified Bootloader, version 2 (ARM UEFI debug files) grub-mount-udeb - export GRUB filesystems using FUSE (udeb) grub-theme-starfield - GRand Unified Bootloader, version 2 (starfield theme) grub-uboot - GRand Unified Bootloader, version 2 (ARM U-Boot version) grub-uboot-bin - GRand Unified Bootloader, version 2 (ARM U-Boot modules) grub-uboot-dbg - GRand Unified Bootloader, version 2 (ARM U-Boot debug files) grub2-common - GRand Unified Bootloader (common files for version 2) Changes: grub2 (2.06-3~deb11u6) bullseye-security; urgency=medium . [ Mate Kukri ] * SECURITY UPDATE: Crafted file system images can cause out-of-bounds write and may leak sensitive information into the GRUB pager. - d/patches/ntfs-cve-fixes/fs-ntfs-Fix-an-OOB-read-when-parsing-a-volume- label.patch: fs/ntfs: Fix an OOB read when parsing a volume label - d/patches/ntfs-cve-fixes/fs-ntfs-Fix-an-OOB-read-when-parsing-bs-for- index-at.patch: fs/ntfs: Fix an OOB read when parsing bitmaps for index attributes - d/patches/ntfs-cve-fixes/fs-ntfs-Fix-an-OOB-read-when-parsing-dory- entries-fr.patch: fs/ntfs: Fix an OOB read when parsing directory entries from resident and non-resident index attributes - d/patches/ntfs-cve-fixes/fs-ntfs-Fix-an-OOB-read-when-reading-data-fhe- reside.patch: fs/ntfs: Fix an OOB read when reading data from the resident $DATA + attribute - CVE-2023-4693 * SECURITY UPDATE: Crafted file system images can cause heap-based buffer overflow and may allow arbitrary code execution and secure boot bypass. - d/patches/ntfs-cve-fixes/fs-ntfs-Fix-an-OOB-write-when-parsing-the- ATTRIBUTE_LIST-.patch: fs/ntfs: Fix an OOB write when parsing the $ATTRIBUTE_LIST attribute for the $MFT file - d/patches/ntfs-cve-fixes/fs-ntfs-Make-code-more-readable.patch fs/ntfs: Make code more readable - CVE-2023-4692 . [ Julian Andres Klode ] * Bump SBAT to grub,4 Checksums-Sha1: cc53d0b3634758f8ebe24564124ede48f6f2535b 10394616 grub-common-dbgsym_2.06-3~deb11u6_armhf.deb ff73b45bb4e9f7971f402011113837301637041b 2565944 grub-common_2.06-3~deb11u6_armhf.deb e86f3edaeb761f0fdb5d4fa6d7579dc59718fedc 818116 grub-efi-arm-bin_2.06-3~deb11u6_armhf.deb 5ae6459eed7340673c4e38db0a5d826218c7def1 2930096 grub-efi-arm-dbg_2.06-3~deb11u6_armhf.deb 43597104aa81a34277aaf72ef1eed86ca5f88a71 279936 grub-efi-arm_2.06-3~deb11u6_armhf.deb dabd801d074ca194728951fee9f777ef9f215d4b 242136 grub-efi_2.06-3~deb11u6_armhf.deb 2d59b9d9235625b216bfc4ee50c2f5a5f2022b56 387460 grub-mount-udeb_2.06-3~deb11u6_armhf.udeb 678091dea4acb5aac41e085d358bb813181d4839 2394824 grub-theme-starfield_2.06-3~deb11u6_armhf.deb 639f96bf437d3c76ef19031761af7b309e882c59 787008 grub-uboot-bin_2.06-3~deb11u6_armhf.deb 2dfe708cbe37918d0b92ca5436fd4c0cedc37748 2725444 grub-uboot-dbg_2.06-3~deb11u6_armhf.deb a28ab6e08ac1bc4c9bf964d13a5079b49b6eaa77 279932 grub-uboot_2.06-3~deb11u6_armhf.deb 2a871adf95b97d96ad971477b5194bef15e47328 1451320 grub2-common-dbgsym_2.06-3~deb11u6_armhf.deb 90886df005c48585280e48f217c8d294160f932b 816312 grub2-common_2.06-3~deb11u6_armhf.deb b12d02edb41f9cf56afdc51e9c3185340f34210c 14333 grub2_2.06-3~deb11u6_armhf-buildd.buildinfo Checksums-Sha256: a6900d0aea817890db1792a44470a2bbad80213217af7fc67d2a2595c1f84c57 10394616 grub-common-dbgsym_2.06-3~deb11u6_armhf.deb 2c09d4e54ae709edd913805000ba1f718fcfa40f89b091ec067e7ad5a2253291 2565944 grub-common_2.06-3~deb11u6_armhf.deb d07ef691f8a7da7162eddb6f6be79fdeed1cf0845714cc510be0ab3eb0d79ed5 818116 grub-efi-arm-bin_2.06-3~deb11u6_armhf.deb 74e30da8ce792fcc76e0f7e90d5ef287351908dbf3d1a409aa64e98a5df4dddc 2930096 grub-efi-arm-dbg_2.06-3~deb11u6_armhf.deb dc29a676290feba868c58f0c436142ed9ce0e9f74df3440392a56332cc6692a7 279936 grub-efi-arm_2.06-3~deb11u6_armhf.deb 6b4d03824f8d210127f9809a5f613304de73f694f0f5380fe3ef06c338a1d2c0 242136 grub-efi_2.06-3~deb11u6_armhf.deb b7605a712179971eb9e08447d0f854d811f88136e4abad92de64356a6d9afbfa 387460 grub-mount-udeb_2.06-3~deb11u6_armhf.udeb 7d63f7ef4d5625c6d8c2f86664ec7b04c086146ad65f755aaf31bd2154d5df3e 2394824 grub-theme-starfield_2.06-3~deb11u6_armhf.deb dc4fecca4775ddb6c03ae587bec8ad7aa96ae1ba1cbc43dcc609f7c7690525f7 787008 grub-uboot-bin_2.06-3~deb11u6_armhf.deb de2bdb1d8b1c736e46b242b5feefdabf2f97bad3063750b994ffc00a72c08941 2725444 grub-uboot-dbg_2.06-3~deb11u6_armhf.deb a4046f182db7b1f9e6a6327f2701ab3bd6605dec696d77ded3073c540274cca2 279932 grub-uboot_2.06-3~deb11u6_armhf.deb 772845ea2701247c46e6ff6d1e4408c4279f8c21b6c865b9f0eb4edae6845c6f 1451320 grub2-common-dbgsym_2.06-3~deb11u6_armhf.deb 1ea7697c7d11cc3e5f380f2f7b96dd48bac8db51ed88a19f5a0a570567a1b1c5 816312 grub2-common_2.06-3~deb11u6_armhf.deb b21721b5d99de5cd916b5a69051a97f23e124161f5a85e596924fe9d82973be6 14333 grub2_2.06-3~deb11u6_armhf-buildd.buildinfo Files: ad873acf659327c9d987c3e917b2f1c1 10394616 debug optional grub-common-dbgsym_2.06-3~deb11u6_armhf.deb e62139e3544bf20c70905abf17f80cc8 2565944 admin optional grub-common_2.06-3~deb11u6_armhf.deb e6cb5b9644eda825febd06a97d374604 818116 admin optional grub-efi-arm-bin_2.06-3~deb11u6_armhf.deb 5bb05e825d6930f6d5537d708d14d943 2930096 debug optional grub-efi-arm-dbg_2.06-3~deb11u6_armhf.deb 616814c8730e21ca3b7e71f744aa0ad4 279936 admin optional grub-efi-arm_2.06-3~deb11u6_armhf.deb a450e82782d1d78b050f3c56fd9c53c4 242136 admin optional grub-efi_2.06-3~deb11u6_armhf.deb 2f7da0f510967f24f9ed48747d610c7d 387460 debian-installer optional grub-mount-udeb_2.06-3~deb11u6_armhf.udeb e56ac0325df8f994075198b0d7f4e90b 2394824 admin optional grub-theme-starfield_2.06-3~deb11u6_armhf.deb 52e6fa64ba4f34c2aafb2888bf216417 787008 admin optional grub-uboot-bin_2.06-3~deb11u6_armhf.deb 5ff87bfb2f6123cc3ff3e9ac20159661 2725444 debug optional grub-uboot-dbg_2.06-3~deb11u6_armhf.deb 676b17a1780b05376f09a6aca6b533ad 279932 admin optional grub-uboot_2.06-3~deb11u6_armhf.deb 2cc5584fad4511e44fb1edab70fd3be9 1451320 debug optional grub2-common-dbgsym_2.06-3~deb11u6_armhf.deb 1eb476e1f7f806b1dd2983cbcd9e1dc4 816312 admin optional grub2-common_2.06-3~deb11u6_armhf.deb d940a67e041a5f39031b7a874e6b2094 14333 admin optional grub2_2.06-3~deb11u6_armhf-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEdkvJoTVAIZVYaO9cyYck2apzqqMFAmUcfnQACgkQyYck2apz qqO3BA/+IE/IU67On+oumDSuuiBLnnnq4Kw60lpYVR4LzXnA/66ZBisFM7+xJBZ1 Xy9RF8PNGxfOFFe5fQShr+ds+pb1UL5xN8G5C0nGsv7/mn6rsrucU0n2B1pK5V8L v1oD32uGm9Spxx+d24IlkWD3FzoVoW1kbFeUGVEVmi9xNLCdDBYoxPQshp/TYiK4 JkzPcgo4ixDJz8C+I2gLuwXoueyX1/LtimRXoRSUml80ausyxn4WIIxXQzMx2LKW JS4dKVv5DGAblRKOOmDURtNoUAMRyvcMXPQVbYaYyU6u7LGGJdzHMwmzB35ATVxE bqYS757jR5PIGAfIeqI6Y4C6ZsHfpodI43pzu/OYpld4vqAObadJW1+S9jq/CttK p7/7g2uUQe3S6T7NOdbphrdSyhF/iw5kBQDJ8TCK/tZWQIb8Dp/EYUTJNc/pnsNp r9nzbEzKc11UnKRqbBPHwth0hbFps0G87V4UpH3N+LiHw06DwiC7zJUJXHyUhJ0d BzN5JEpB3uTgz7DGKW1HMLQZG8HgGKRy4Jc2dqkloR6uXAxOvXruZ8uBkEwekydn 5HUXY4rbr1tByyQmQaU1BNRwLAQofpsuYlbAEnKD1tPlXWUhqVhP3EuMTbzoQjRO LYyUmSjchM9brjWpwf5xdYhfp+wTNBp1Xp2seVvWHs1EaaMyd2g= =8q7k -----END PGP SIGNATURE-----