-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 20 Jan 2024 07:56:15 +0100 Source: gnutls28 Architecture: source Version: 3.7.1-5+deb11u5 Distribution: bullseye Urgency: medium Maintainer: Debian GnuTLS Maintainers Changed-By: Andreas Metzler Closes: 1061045 1061046 Changes: gnutls28 (3.7.1-5+deb11u5) bullseye; urgency=medium . * Cherrypick two CVE fixes from 3.8.3: Fix assertion failure when verifying a certificate chain with a cycle of cross signatures. CVE-2024-0567 GNUTLS-SA-2024-01-09 Closes: #1061045 Fix more timing side-channel inside RSA-PSK key exchange. CVE-2024-0553 GNUTLS-SA-2024-01-14 Closes: #1061046 Checksums-Sha1: c8b6e8801d4bacdbe58c5e2fcefb58f75b67def3 3522 gnutls28_3.7.1-5+deb11u5.dsc 84ef766db919cac520c54dd4b5c1a80391f480ac 100560 gnutls28_3.7.1-5+deb11u5.debian.tar.xz Checksums-Sha256: 2d36c3fefd269c3f92d6a1f6bbb752e6e9585410dc8bb834a723eaf693cb0082 3522 gnutls28_3.7.1-5+deb11u5.dsc b50f57600d68d03fe88f116db6a103647d4f361c7f1909c23ce75cf4454567ec 100560 gnutls28_3.7.1-5+deb11u5.debian.tar.xz Files: 12af45fa6fa6bdca1544ac33a2bcbd71 3522 libs optional gnutls28_3.7.1-5+deb11u5.dsc 065ebd3f5c3e47d873d0984dc6bea098 100560 libs optional gnutls28_3.7.1-5+deb11u5.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE0uCSA5741Jbt9PpepU8BhUOCFIQFAmWrqCwACgkQpU8BhUOC FITn6w//X38NGiMrDu+XHdm57HAd8KxoZKq2uG9EhB11rYAiR6EUNP14QXNsl22S pFwPDGDbszSqBlmyCaqNVj7SxLnqUkO+X7DgwdgfqV5GnTpDf5GwMMPx4ISMMU5X DB/IyBN1v1VcHG0iwJ1jHNp7Om56U1hZAOkQBzhh2liWtgc3wnwx2akXTzLzahef 6oNbcLr84lSjCmyF2s2LbWhE7KeSQEYQACTyNpIdX3/vM8ZZz5eXoM8cug7f00Nm S2fD8YLNbrpDs7EGs2pVcatEQK6T8R6kxXpX+SDDMiESobCxXAzA/DTFN4ECEfhP 744xviXO62t5mJEkA4lnIlTyJUU4BZLCPTxz261ZxClixPdldvuapScfrPMH2N9t OEoGYQFFC3jqzUaBC4CSTGo04FUhfn0KTB1kK+OG2qdxlqDOdndxZynG6x/wCSsJ dCWEAtcQJtSni1Tkur+J8lpOOqRiSz9ZUCLurtqs0qRKxlN+a46aJeS3LU/0jg1L SwouSOr+xb8HAE6zEMM7d1nBhVdW+bTK7J2BQxKDiHl9OJfwmZBySmi5L/TIa6PX MDNkZ2Zu7FXUWntqqlrl+lEOnKV7iJ3X9rB3QVX5jBE6OPE12os9TsNZLcIxulD5 40Lg/qGQIOqlTVHd4rJDI7n/QGgSf9guTsBxj66zHNa+l3IcM44= =ZNvJ -----END PGP SIGNATURE-----