-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 02 May 2024 07:59:08 -0400 Source: python3.11 Binary: libpython3.11 libpython3.11-dbg libpython3.11-dev libpython3.11-minimal libpython3.11-stdlib python3.11 python3.11-dbg python3.11-dev python3.11-full python3.11-minimal python3.11-nopie python3.11-venv Architecture: arm64 Version: 3.11.2-6+deb12u2 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-conova-04) Changed-By: Stefano Rivera Description: libpython3.11 - Shared Python runtime library (version 3.11) libpython3.11-dbg - Debug Build of the Python Interpreter (version 3.11) libpython3.11-dev - Header files and a static library for Python (v3.11) libpython3.11-minimal - Minimal subset of the Python language (version 3.11) libpython3.11-stdlib - Interactive high-level object-oriented language (standard library python3.11 - Interactive high-level object-oriented language (version 3.11) python3.11-dbg - Debug Build of the Python Interpreter (version 3.11) python3.11-dev - Header files and a static library for Python (v3.11) python3.11-full - Python Interpreter with complete class library (version 3.11) python3.11-minimal - Minimal subset of the Python language (version 3.11) python3.11-nopie - Python interpreter linked without PIE (version 3.11) python3.11-venv - Interactive high-level object-oriented language (pyvenv binary, v Closes: 1070133 1070135 Changes: python3.11 (3.11.2-6+deb12u2) bookworm; urgency=medium . [ Steve McIntyre ] * Apply upstream security fix for CVE-2024-0450 Protect zipfile from "quoted-overlap" zipbomb. Closes: #1070133 * Apply and tweak upstream security fix for CVE-2023-6597 tempfile.TemporaryDirectory: fix symlink bug in cleanup Closes: #1070135 . [ Stefano Rivera ] * Apply upstream patch to avoid a potential null pointer dereference in fileutils. * Apply upstream security fix for CVE-2023-41105 os.path.normpath(): Path truncation at null bytes. * Apply upstream security fix for CVE-2023-40217 Avoid bypass TLS of handshake protections on closed sockets. * Apply upstream security fix for CVE-2023-24329 Strip C0 control and space characters in urlsplit. Checksums-Sha1: 566578a382b298af08ef2caf8a3417e71ff823fe 16471412 libpython3.11-dbg_3.11.2-6+deb12u2_arm64.deb e1bfffe2702e31b668ba2a41f2f3467cb895b2d8 4391152 libpython3.11-dev_3.11.2-6+deb12u2_arm64.deb f3500aa52927588bfaaf534df1f0880b275530b6 806952 libpython3.11-minimal_3.11.2-6+deb12u2_arm64.deb 801ae0dee7bab13184e867d8c3510232b6b59d65 1746132 libpython3.11-stdlib_3.11.2-6+deb12u2_arm64.deb 0c1161800977884db27ac5ea358b71a3f288bf79 1839344 libpython3.11_3.11.2-6+deb12u2_arm64.deb 214b14f634ff836542c62583ce386789bf19bf5a 35663456 python3.11-dbg_3.11.2-6+deb12u2_arm64.deb a7867ef386983058898f421be19c189c8d04502a 616772 python3.11-dev_3.11.2-6+deb12u2_arm64.deb 0739408273abffd3fb9a719dfab386fa2b82253f 1292 python3.11-full_3.11.2-6+deb12u2_arm64.deb 3a33b3c28ec2dfd7793151f4b023e797b96076f4 1859572 python3.11-minimal_3.11.2-6+deb12u2_arm64.deb d35e2ece691115e09dfee1450876ed54abaeda2c 1847156 python3.11-nopie_3.11.2-6+deb12u2_arm64.deb 94f1eb373c567e1ef3bcb2fd40182c9bbf02df4b 5892 python3.11-venv_3.11.2-6+deb12u2_arm64.deb c7bac687863e5eaeaa2b1f18ad80b1d9a955b882 13339 python3.11_3.11.2-6+deb12u2_arm64-buildd.buildinfo 3dfa42d81de366bedbb3aa3d5d7e94f4e8d3ac73 572784 python3.11_3.11.2-6+deb12u2_arm64.deb Checksums-Sha256: 41b06fa7cb1a0fac8765f03ba4740a75fe57f2f0abc4f862f2f9568e02f0ccc7 16471412 libpython3.11-dbg_3.11.2-6+deb12u2_arm64.deb 7102c729067d1d095ae7c453b2f5dc1099346373d959f599feedda5808f3e87d 4391152 libpython3.11-dev_3.11.2-6+deb12u2_arm64.deb 12e7ee3df8decc7c63862b5a583caf52748d6f1e5713b3c280f14148285794f7 806952 libpython3.11-minimal_3.11.2-6+deb12u2_arm64.deb 0b654d664701881c7dd930df91e799a6af3035f899fd196e8299f7b50a5c4043 1746132 libpython3.11-stdlib_3.11.2-6+deb12u2_arm64.deb fd4c2f173fea18c8eadb5d44bbcafee138dd47b3aa9cbbc487aceb94472f58f1 1839344 libpython3.11_3.11.2-6+deb12u2_arm64.deb ff919f6ae2ef6611c02c07b35f91e9366fe5a41e2598c69dd0e006f0eae2e165 35663456 python3.11-dbg_3.11.2-6+deb12u2_arm64.deb b67a1efa40315ec5d771e90efd46701dbdb5482ef9457d4491fd14726ecc87e8 616772 python3.11-dev_3.11.2-6+deb12u2_arm64.deb 6aa2e1cdf8e966ff3089b6033e8ee671d7979556be904392f8853bf1613f96a5 1292 python3.11-full_3.11.2-6+deb12u2_arm64.deb f6723c7510287e1eda042629879ca1e9a113453381c816e3acc8103eedf8e918 1859572 python3.11-minimal_3.11.2-6+deb12u2_arm64.deb e0782aca2d66c34bce1d7920b8751234dc69308d806e160808e4be985dc0a5f0 1847156 python3.11-nopie_3.11.2-6+deb12u2_arm64.deb 395d684ce8f8752b488d7714d5c64c96bf1f86489c65b3ac86516c39580e43ca 5892 python3.11-venv_3.11.2-6+deb12u2_arm64.deb 8d1dba2fb2265c554a566db5911c4e8c061461fe155c11e96cbe5286124d1a4f 13339 python3.11_3.11.2-6+deb12u2_arm64-buildd.buildinfo 84685801b379248b558066318855becf3cff0e3d8ccc44039a6c7acf52dfa4af 572784 python3.11_3.11.2-6+deb12u2_arm64.deb Files: 7adb2c448b0633c72cc7b7594a146647 16471412 debug optional libpython3.11-dbg_3.11.2-6+deb12u2_arm64.deb 6568811df36ec5c272082db080ccf68d 4391152 libdevel optional libpython3.11-dev_3.11.2-6+deb12u2_arm64.deb 3e8a8855eb3e4e9d93a36a3e081654ae 806952 python optional libpython3.11-minimal_3.11.2-6+deb12u2_arm64.deb 2d17ecd149a99660557c4b82a174d9a5 1746132 python optional libpython3.11-stdlib_3.11.2-6+deb12u2_arm64.deb e75d9d17baa813c80d1fa53590f87291 1839344 libs optional libpython3.11_3.11.2-6+deb12u2_arm64.deb 5234a398de9b164ba4a700f4113eb099 35663456 debug optional python3.11-dbg_3.11.2-6+deb12u2_arm64.deb e6b816c13e67363ebd2ee93d5f74a8ca 616772 python optional python3.11-dev_3.11.2-6+deb12u2_arm64.deb 0f9380cbbccf6288b4b2c804ff59ea44 1292 python optional python3.11-full_3.11.2-6+deb12u2_arm64.deb 3e7fd15b03df2f0428d1ee69074a7bdc 1859572 python optional python3.11-minimal_3.11.2-6+deb12u2_arm64.deb f2ec101294ebecc5442db5a72fe1ba19 1847156 python optional python3.11-nopie_3.11.2-6+deb12u2_arm64.deb 5293b06e732ec60392c747cd29e93fab 5892 python optional python3.11-venv_3.11.2-6+deb12u2_arm64.deb 472366441f028071ae63ba8d90ba3839 13339 python optional python3.11_3.11.2-6+deb12u2_arm64-buildd.buildinfo 537f4441b00f7322f9ff80ce3dfa3298 572784 python optional python3.11_3.11.2-6+deb12u2_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEElif5H+pIB11ZS5Aay8vyjiVDuNYFAmZL+LwACgkQy8vyjiVD uNYBmBAAkXLL7mlC4y/ZvccpMUdjr/SPzf40ubX68CmWFGED1C2BIl+c2qgSfFzk w6+cx/4CRecEc6Qaknzo9uxfo4TZtUeHqRuzVKlbuPFUdvUNnZGNiIkBYRpJZfSw sK/gVRa5pqjLAzBw+6RT1pyrUI+aMFbGu3vMDrKR4QSN0bzMTjWI3EiVd5/0FcTt G3alTsYsS1KNgoLoMUMWRbaXsNIus8guT2S1n94pOSXIU6xVoATUTfJQHJyhbX7+ sIzYl2Kl63sfwF9BRiH40Oob74BrLnnVRQFwYwQA7pVpUoUCbvwZjy1zTdwE5Fc7 5EUh34LecfJn7gGQGqo+79nZcjiGA/AhhpPSvdW4pWIwyhLQjUxWLL9cxxRy+tII r8CokkhObmLsgd4vgbOG30q3mt/aV7Rxw8yXdP4IYWJNy6gVNMrvR/ja78dOHen0 0oQXXyPyPMWCQprsxvM2ADMJZbxkGkncfnUE4fe2yhRmg/lJ1WSTgMLwsVyDwor9 4YghNHeYirxmcSF/KDmu71ESxojuBOecdf2mvurxaqSO+NhtTxWzKURnO4SEG4op bwg1irjyIEsIHg0n+j/Ct/A79ATzU8CqT+PuCeeOXkDeEIPJrW+OVzco202ffn3j /rZZZQ+untG3PZAueCOFPkWrbkDCTeKi+QeFyLx1NwXeKkoyynQ= =imWK -----END PGP SIGNATURE-----