-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 May 2024 21:28:59 +0100 Source: glib2.0 Binary: libglib2.0-0 libglib2.0-0-dbgsym libglib2.0-bin libglib2.0-bin-dbgsym libglib2.0-dev libglib2.0-dev-bin libglib2.0-dev-bin-dbgsym libglib2.0-tests libglib2.0-tests-dbgsym libglib2.0-udeb Architecture: ppc64el Version: 2.74.6-2+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-01) Changed-By: Simon McVittie Description: libglib2.0-0 - GLib library of C routines libglib2.0-bin - Programs for the GLib library libglib2.0-dev - Development files for the GLib library libglib2.0-dev-bin - Development utilities for the GLib library libglib2.0-tests - GLib library of C routines - installed tests libglib2.0-udeb - GLib library of C routines - minimal runtime (udeb) Changes: glib2.0 (2.74.6-2+deb12u1) bookworm-security; urgency=high . * d/patches: Backport GDBus fixes from 2.80.1 - If local users send signals on the D-Bus system bus that spoof a trusted sender, do not deliver them to signal subscriptions for the trusted sender's well-known bus name (CVE-2024-34397) - Fix a use-after-free when subscribing to signals with an arg0 match rule, originally from 2.79.0 and necessary to make the test for CVE-2024-34397 pass reliably - Add a local backport of g_set_str(), required by the above - Add proposed fix for a race condition that can cause a unit test to regress after the above * d/gbp.conf, d/control.in: Use debian/bookworm branch for Debian 12 Checksums-Sha1: af26651f510ed96f3c28fdec14fde212c86ad010 11376 glib2.0_2.74.6-2+deb12u1_ppc64el-buildd.buildinfo b1fa7d02ecb9c521014360d0d1c8d946c125e308 4077044 libglib2.0-0-dbgsym_2.74.6-2+deb12u1_ppc64el.deb afae8457ccc483360d2db11064385aeb35c20997 1462652 libglib2.0-0_2.74.6-2+deb12u1_ppc64el.deb 67d19fa4096aff6b708229a3c2237b5bc5c02f74 148288 libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb b93b4a5f1b30c64913a8b5402afa6624bd007354 113388 libglib2.0-bin_2.74.6-2+deb12u1_ppc64el.deb 31bc4c51586092be28d7355a3563a223080b3fc1 73224 libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb 6b9c354ab14327c9806f0adf1708fcfc73363b0b 153800 libglib2.0-dev-bin_2.74.6-2+deb12u1_ppc64el.deb a17fe0d28fed964dbbcba9276feaea6f57cbf778 1771132 libglib2.0-dev_2.74.6-2+deb12u1_ppc64el.deb e20bb2ee895f029a0b2b0a796cc26d13b48b711b 4480224 libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_ppc64el.deb b81606cb7afcc4b4fa84a6d61acf1043270c1fd3 1789848 libglib2.0-tests_2.74.6-2+deb12u1_ppc64el.deb 57c048d8ce0ef8512dc88ec61f49620d7d427ce1 2327688 libglib2.0-udeb_2.74.6-2+deb12u1_ppc64el.udeb Checksums-Sha256: d451ba3b9a04badf0c697696318158e2a6745f409baa433d1206bbaf29d5de56 11376 glib2.0_2.74.6-2+deb12u1_ppc64el-buildd.buildinfo 82233a32988c2620bdff33d0390ee7ee61706a645a6edb45798d185ffb78535b 4077044 libglib2.0-0-dbgsym_2.74.6-2+deb12u1_ppc64el.deb 6a10872c5e1739e9db8c92fc702ccff69757b9116920fb4e5c6da30f93062e8b 1462652 libglib2.0-0_2.74.6-2+deb12u1_ppc64el.deb a53380b413b3d2bcf781a78da35558a2e1a3774e2b072ab579d29dab62f6bebc 148288 libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb 8a481b3139f6da6020de9f6f19bde96d0d032dd08e2cbfffce418577390d9aac 113388 libglib2.0-bin_2.74.6-2+deb12u1_ppc64el.deb 6f0cd536cfaf77de172102d4b1a89d288a8cd7eca3371b103de72efc0eb8c54b 73224 libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb b66d4e4ed7b2bf7d1f157b95b3be515736db9b36c99da518f636d077e1b496f9 153800 libglib2.0-dev-bin_2.74.6-2+deb12u1_ppc64el.deb 2f2cab8d5afb4e907cc75a65b79bc7175ab5abf5a004260f87d8993def6f98ce 1771132 libglib2.0-dev_2.74.6-2+deb12u1_ppc64el.deb 5e086a2fa5b392b14e686a1947a06f3faad51fe4311660a60446d25902ce911d 4480224 libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_ppc64el.deb b0b381bac7389da1d6d96fd55074c2a0e377135bf2c0981fdceb853f6a84aee5 1789848 libglib2.0-tests_2.74.6-2+deb12u1_ppc64el.deb d2f77521ea82f130f5492b8544055a1149809a684ba94e7bd47c586a5e13c40a 2327688 libglib2.0-udeb_2.74.6-2+deb12u1_ppc64el.udeb Files: 508ef6723c9b14f6f574e71fa6f79e6a 11376 libs optional glib2.0_2.74.6-2+deb12u1_ppc64el-buildd.buildinfo 007cc78b5740fb5b2012675716570522 4077044 debug optional libglib2.0-0-dbgsym_2.74.6-2+deb12u1_ppc64el.deb 75604d57cb3770e577401160cdb7c203 1462652 libs optional libglib2.0-0_2.74.6-2+deb12u1_ppc64el.deb f223fad3cbe07d42d130555ea826fe48 148288 debug optional libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb b89eaf5742d15ef215ee48d8c4610815 113388 misc optional libglib2.0-bin_2.74.6-2+deb12u1_ppc64el.deb 862fef508cb0d9a1ec41828ce6fb37f5 73224 debug optional libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_ppc64el.deb e6d492c6b6a294d3b0fc19976f47e24f 153800 libdevel optional libglib2.0-dev-bin_2.74.6-2+deb12u1_ppc64el.deb 52cde05363ea84ab04653383650ebd91 1771132 libdevel optional libglib2.0-dev_2.74.6-2+deb12u1_ppc64el.deb 63b1b71ed935d9313cf9c29a9716277e 4480224 debug optional libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_ppc64el.deb f376f3d50af1551177490b5e29ccfbcb 1789848 libs optional libglib2.0-tests_2.74.6-2+deb12u1_ppc64el.deb bd1f74e690b9bb76722f12f46cc3e59d 2327688 debian-installer optional libglib2.0-udeb_2.74.6-2+deb12u1_ppc64el.udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE5hbnFkJlczvLwwS0Y7DdE4sWZ/UFAmY6Yl8ACgkQY7DdE4sW Z/UZRw//c4c/FEcwEx6pyN05Ozcdx+39U1H+5NjIG6kD+mXS1aPzxzJh6EsbODRg 5QKBpIZOmLoCUvt1DA2us+hB7yY0DxGQo0NGmpHJuieGW4NuFnHSadJoC6GA7jQD v+solkh508R+XUUxxEzuJd4ViuDgxzI4giZrczyddgYaphCymH02GANui23bJ0Jp BP2GADO77tKntC4ffFFvaqyRBeA6URFutqSY3ckzP6VJyNruIjDIpXD7xWCTbP9w lxc3rJ6lafXqI7vtPRL/Eb89jk2pZnKGrHC5iqZlnX6toHzS3e8/9fDLZopvmaZW lRBDr0gVCEiiinNLmMHDC/qFKyTVJGCGPDUDjpPu6Ihgc9IA4LFD4XBtVHJ+YhYf NROyu4zhMl9Fu/AT7wSEIBDsmm5jXcD6RgORMlcaKXa4TU9qKBIT9k+xbxabcHTC uROxPP9eqBP2+Cbk1Bcbxz92Li0BAAgnBaALIdhr2sActDdOnpaUOdgukF67yfvs n+KT9bzQE3SWnvzwY19nnLyZqiKi/DN4tLnq8G9sAQnDMs3UyfZZLsKumnpcu6Gk GTl5OQskMjOImtVZSpkMS8NXIN3N78EZ8Z8t1YoqLDTRQ5n6BEUcDKwkZHLHHRv0 PT6xAxj+gPMT/ziD12x0VUkvCcqfarknxJiyK3B7AplqEDeAI7M= =AiX8 -----END PGP SIGNATURE-----