-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 29 Sep 2023 22:38:02 +0200 Source: exim4 Binary: exim4-base exim4-base-dbgsym exim4-daemon-heavy exim4-daemon-heavy-dbgsym exim4-daemon-light exim4-daemon-light-dbgsym exim4-dev eximon4 eximon4-dbgsym Architecture: arm64 Version: 4.96-15+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-01) Changed-By: Salvatore Bonaccorso Description: exim4-base - support files for all Exim MTA (v4) packages exim4-daemon-heavy - Exim MTA (v4) daemon with extended features, including exiscan-ac exim4-daemon-light - lightweight Exim MTA (v4) daemon exim4-dev - header files for the Exim MTA (v4) packages eximon4 - monitor application for the Exim MTA (v4) (X11 interface) Changes: exim4 (4.96-15+deb12u2) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Address external and SPA authenticator vulnerabilities (CVE-2023-42114, CVE-2023-42115, CVE-2023-42116) - Auths: fix possible OOB write in external authenticator (CVE-2023-42115) - Auths: use uschar more in spa authenticator - Auths: fix possible OOB write in SPA authenticator (CVE-2023-42116) - Auths: fix possible OOB read in SPA authenticator (CVE-2023-42114) Checksums-Sha1: 975f600f82a6abd1cc13391942b9bf5601abbb16 137216 exim4-base-dbgsym_4.96-15+deb12u2_arm64.deb c2d7e1aaa347b1ab112a949d2e6d5afa52af8bef 1113664 exim4-base_4.96-15+deb12u2_arm64.deb 1c84843a19a933d9d5246caf6c4327e32b1a31ad 1601500 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_arm64.deb 6c55f48a49e687c639c83532ebe60473fc3ba4cc 610604 exim4-daemon-heavy_4.96-15+deb12u2_arm64.deb 9a219a3ed30ab390bc26c0a58e40a45366ea13d7 1405696 exim4-daemon-light-dbgsym_4.96-15+deb12u2_arm64.deb 1dfc66356b0e6ba16ef8ad300728fb039e41ba5e 556512 exim4-daemon-light_4.96-15+deb12u2_arm64.deb 0491a22658f3b68c818e216bfdbfc0643e6ec2c9 37732 exim4-dev_4.96-15+deb12u2_arm64.deb a2275f6a26df58932efe65e0541423ec1ad88bfe 10994 exim4_4.96-15+deb12u2_arm64-buildd.buildinfo ac0eef6d5bac77920c41c51f5935910f887537c5 136712 eximon4-dbgsym_4.96-15+deb12u2_arm64.deb 14bea68969be558a7929917da5382951653724b7 71128 eximon4_4.96-15+deb12u2_arm64.deb Checksums-Sha256: 307d340e2f9db64b2b1734d117bce25567f69e11563239f7a90719ee04b4830b 137216 exim4-base-dbgsym_4.96-15+deb12u2_arm64.deb a57275be6f57b9498f7d8ba481f092ef9bb9d74bf403a58f63b96c20aae925e9 1113664 exim4-base_4.96-15+deb12u2_arm64.deb 8503ff324f753a0ea13dffcd7b5096993a124977f50fb111eb5be12c105eb762 1601500 exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_arm64.deb f3b8b7101812c715a7666cd5395605bfd6bbf4c18feef6db604baa7e3679e504 610604 exim4-daemon-heavy_4.96-15+deb12u2_arm64.deb 4e355bf7b5e986f74a6b88b4a45a62622e609e17c99270fb30747500ce70eef6 1405696 exim4-daemon-light-dbgsym_4.96-15+deb12u2_arm64.deb f8bf3d860e9a78821ee60aaae5662d33ab7cde0d417fb576b98773bfcb575047 556512 exim4-daemon-light_4.96-15+deb12u2_arm64.deb f9e06465bc0eb53af5d061b4eb1c2b38bc05e1937c78c1fdafcee12b73299b74 37732 exim4-dev_4.96-15+deb12u2_arm64.deb 5ce39242ca2f1ef05727c6006fcf2bb5650e47dea38999caa75e6170a2799387 10994 exim4_4.96-15+deb12u2_arm64-buildd.buildinfo a4353e75815848e735f2145528831153268ca3d7cda12f3d93ddfb29a26e9c98 136712 eximon4-dbgsym_4.96-15+deb12u2_arm64.deb 70658dfb589417e158967f1a3e4c1b07bf53e3601f2c0fa9c77fbff17050cd36 71128 eximon4_4.96-15+deb12u2_arm64.deb Files: 766949d7826878878fa4140c9361f9e7 137216 debug optional exim4-base-dbgsym_4.96-15+deb12u2_arm64.deb ed9e666fb4a7ace7d6362a74ac733bcc 1113664 mail optional exim4-base_4.96-15+deb12u2_arm64.deb 3af3d9cd72be268121655de9196391b3 1601500 debug optional exim4-daemon-heavy-dbgsym_4.96-15+deb12u2_arm64.deb 0dd5618b2f516ade6dd68800f36ecf7d 610604 mail optional exim4-daemon-heavy_4.96-15+deb12u2_arm64.deb 4d346ad9b630f0db9545ba5c337fdb77 1405696 debug optional exim4-daemon-light-dbgsym_4.96-15+deb12u2_arm64.deb 429cfddc7a0c44f961ed67c8eef39e6c 556512 mail optional exim4-daemon-light_4.96-15+deb12u2_arm64.deb 4ce41d7041af69238ce99c47e98315d7 37732 mail optional exim4-dev_4.96-15+deb12u2_arm64.deb c6273ed1d3d78fc80e9db60d6d992e4d 10994 mail standard exim4_4.96-15+deb12u2_arm64-buildd.buildinfo 5cf5c5ecd670d47fd152ffbf60ec4d6f 136712 debug optional eximon4-dbgsym_4.96-15+deb12u2_arm64.deb 0102f6212de7b520ec489b9bf4fc7cce 71128 mail optional eximon4_4.96-15+deb12u2_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvH8AOGUMuGQ9yWfAdEqOeknEYfEFAmUZyWUACgkQdEqOeknE YfEngQ//VjgQFZ72LACIZ2pO87vrF2ZeN3SF+WSBhGr7m2vvr36qE7KXDxwls6lA 3dbpoqdGuUlOba9TI3/7TBRQpRMPdWoHfV3lRvCdrFgA26hU+17Q50e7A/30ykkD GnZuTjHtDJc84oms/VRrhy7N698+Vvgq8zq0Xz04pi5RtNIfgBXcNRaXqkEg2TOM dg8cEZuM5BaPNgo2P29xMz/vlhujU9ytnhOl+gEppUoqyVR4Z0TrvnlLOmJUTM55 LiqTJpXSjcQybYG2UHqgjObPq87pE0mzBYHNjbG8daBNVxg04Jrez4eAf3HtomIV hmez2qEnEPePx+wYHzoZ9TKkMFgllZ+DtuQubo5icyXJ9TwK8DEe9SSeGt1OYwCy +OWwk9pV4pxQHyVHtIaZ69Dac1Il7edf5gVm/hMRSwF/o9ZbpuljD+Dgw2Cn+/Qo Dw4eA3J1oxtuGTlAF1/eudNp086Fc0/Z8Eu5ImWDPKDmIVyTrsv6k3Ye/Eb7ehJq KFcAIOF3I3SQDCq92lENFDCY3NirKYoJTSMHaDHAqkvi/3srrkOfWySFamLMM0Oj 7VaoRsByWNGa95pv8e/cJhZaAblq6kbsZhblMtCDfqNT3GZKEfYZWgdbZJMUnUh3 hjT+DOvkHA2v5fN/zaw8nLKkLfvHO8J1qMRHmiQGpTXkB0pOOUk= =otF5 -----END PGP SIGNATURE-----