-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 29 Sep 2023 22:38:02 +0200 Source: exim4 Binary: exim4-base exim4-base-dbgsym exim4-daemon-heavy exim4-daemon-heavy-dbgsym exim4-daemon-light exim4-daemon-light-dbgsym exim4-dev eximon4 eximon4-dbgsym Architecture: amd64 Version: 4.96-15+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Salvatore Bonaccorso Description: exim4-base - support files for all Exim MTA (v4) packages exim4-daemon-heavy - Exim MTA (v4) daemon with extended features, including exiscan-ac exim4-daemon-light - lightweight Exim MTA (v4) daemon exim4-dev - header files for the Exim MTA (v4) packages eximon4 - monitor application for the Exim MTA (v4) (X11 interface) Changes: exim4 (4.96-15+deb12u2) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Address external and SPA authenticator vulnerabilities (CVE-2023-42114, CVE-2023-42115, CVE-2023-42116) - Auths: fix possible OOB write in external authenticator (CVE-2023-42115) - Auths: use uschar more in spa authenticator - Auths: fix possible OOB write in SPA authenticator (CVE-2023-42116) - Auths: fix possible OOB read in SPA authenticator (CVE-2023-42114) Checksums-Sha1: 5f441c6a15d1ba22bb0e626b3058882a2191e253 139228 exim4-base-dbgsym_4.96-15+deb12u2_amd64.deb 0b4aa561cb41a66d9bdf365f4d330b67526c5c02 1115892 exim4-base_4.96-15+deb12u2_amd64.deb 87918e6cb480bb41a5448ca4764662b4384eb60d 1611648 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_amd64.deb af639476bc928dfbd3f53f9caba5c91ae2b9e9de 663152 exim4-daemon-heavy_4.96-15+deb12u2_amd64.deb 05b33d8d32c7be7cfc8505e99bbeceea9d2d92fc 1416776 exim4-daemon-light-dbgsym_4.96-15+deb12u2_amd64.deb 5e9b511236b29d7f32306204e8d4701e7b2f7d4f 603716 exim4-daemon-light_4.96-15+deb12u2_amd64.deb b52a15d0f667db676259d0f15175a1da8ac8abc1 37732 exim4-dev_4.96-15+deb12u2_amd64.deb 1c34e042177a344d81a3ac24ba6ff199cc090a09 10995 exim4_4.96-15+deb12u2_amd64-buildd.buildinfo 6343c62ad7df154ce80d234cd167bc189da558e8 137060 eximon4-dbgsym_4.96-15+deb12u2_amd64.deb 4e374690d64e00dcec9ef61a98815d5eb367d77d 72780 eximon4_4.96-15+deb12u2_amd64.deb Checksums-Sha256: 6ae061003da1148ab5a68d2b0f7969964153542aab4938eafd1e9cd2cfd12785 139228 exim4-base-dbgsym_4.96-15+deb12u2_amd64.deb 93825451a0a095061d673d8270108dcd4c54868e1323b7ccc24460a185a5b27b 1115892 exim4-base_4.96-15+deb12u2_amd64.deb dfcbbf850a132ab81fa14d909289752afeb56633730e9375fc29548020e28fe9 1611648 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_amd64.deb 9b71db5cb1ee1abd8e6fa854e6a7dd1dbba6eb0fd9513026f0e1b8580fa54cce 663152 exim4-daemon-heavy_4.96-15+deb12u2_amd64.deb 846b3f92c889a7b6112e99889982a2ffdacfbcc8c195c8e3ab29bcd9fe00b394 1416776 exim4-daemon-light-dbgsym_4.96-15+deb12u2_amd64.deb 3662a331fbc6398714ddb37f33003643c5de07935d506831cbec632273184c05 603716 exim4-daemon-light_4.96-15+deb12u2_amd64.deb 84d5a9851805085ddc4ff43c1d97cdca8490ee9945bd1c2b60a167751808f235 37732 exim4-dev_4.96-15+deb12u2_amd64.deb 3aa7d60d904e5256692da52f142b48c3510db1c70624a56af955264c6c5f2b0d 10995 exim4_4.96-15+deb12u2_amd64-buildd.buildinfo d513f8137d154b14d57019a0a4967b5cc309de048debdceca23f0915c44ee9ed 137060 eximon4-dbgsym_4.96-15+deb12u2_amd64.deb baee7af2d1bb9490327f54469b15ea5195ba095cd902fd5f529c22bf8730aff4 72780 eximon4_4.96-15+deb12u2_amd64.deb Files: 9ecad75da8e830912ebd2c8abcdf3563 139228 debug optional exim4-base-dbgsym_4.96-15+deb12u2_amd64.deb 67f036f355b345b4d0d89fc370c94970 1115892 mail optional exim4-base_4.96-15+deb12u2_amd64.deb 64370229335b7a6c1439ecc006591beb 1611648 debug optional exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_amd64.deb 0f8f6ea52a230b2ec8c381462c6f2da0 663152 mail optional exim4-daemon-heavy_4.96-15+deb12u2_amd64.deb b201995582534d0f1d6d2b4fe7acb7a3 1416776 debug optional exim4-daemon-light-dbgsym_4.96-15+deb12u2_amd64.deb 497d42509ae191537e4627353699c8a1 603716 mail optional exim4-daemon-light_4.96-15+deb12u2_amd64.deb 326220c8ef5e614900d0a3a296e3813e 37732 mail optional exim4-dev_4.96-15+deb12u2_amd64.deb 586ccd3ffeaa3c3ebad887a792ff067f 10995 mail standard exim4_4.96-15+deb12u2_amd64-buildd.buildinfo 6b5ca7ba60739500371d3e9f0a753bdd 137060 debug optional eximon4-dbgsym_4.96-15+deb12u2_amd64.deb bb319d023eb00fcde055d3060deaccde 72780 mail optional eximon4_4.96-15+deb12u2_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEi/TVpVg0yb7dq8QfDZWW6X29YdoFAmUZyHIACgkQDZWW6X29 YdoJxA//f1ioeadd1SD/OD/nBqu53IxZkPhro4ZYWvkTQZ+0zPbZ6lWxR2PeMgON I+oU+Pgt+R2n+9ZtN/KhevCOlWlhwdwasSSwUsSBRSHW9P/p7W8Jnp4NS1Gd9f3L 7Cje98rz0/GLVEq/xFbc3Fs9e/tgshO6qvvUiclQ0LcjMazyVQRy/COOzUFwpvSi +f3LxET4nobsdsdf7P1V0UGg5r5HMJ31bWCWtB3A7U5eq+oF/W+E7Ykwp0SkKiNI o6rPSataTPWa4GNlxKPb7NyEvaMvTQ7JZGbN225stXa+eIe9WREtbLPhpIy1vVE/ ZJcag16sFyZO5FFyGiFruTQ1Gj7p3Q+jz6yyrrCxgpJNz51sC7KjLqQetnxl4ynI 5zPBzo/5rI2iMIipZGAom6uj5e63ys/nE6bhsz3AVe9SQxrulURDt8iMXC6Bx+9O K28MsYI+JpPyyMu9TlNs8gx87T22e5p89RuN5iMvGNbLJEl01tOsNAWDqh38lA7c XRDh99giZkp3SXcfIqc+mPuvsoCRTotHOx7oQ1WfDbeUaeo1ZnTiKFvt1KogGZLJ uNpTKQ14hQHyMOfYVgDgkvcYlAClc2Z/dDT38p4h/UCNZv2JZ3EgRcpL17zOTi1+ X7zFwXcFInJ6PX5J3BrZwErLwSMjqogw6LKyl7FhJ81IEg6AW7g= =O2ve -----END PGP SIGNATURE-----