-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 02 May 2024 07:59:08 -0400 Source: python3.11 Binary: libpython3.11 libpython3.11-dbg libpython3.11-dev libpython3.11-minimal libpython3.11-stdlib python3.11 python3.11-dbg python3.11-dev python3.11-full python3.11-minimal python3.11-nopie python3.11-venv Architecture: i386 Version: 3.11.2-6+deb12u2 Distribution: bookworm Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-02) Changed-By: Stefano Rivera Description: libpython3.11 - Shared Python runtime library (version 3.11) libpython3.11-dbg - Debug Build of the Python Interpreter (version 3.11) libpython3.11-dev - Header files and a static library for Python (v3.11) libpython3.11-minimal - Minimal subset of the Python language (version 3.11) libpython3.11-stdlib - Interactive high-level object-oriented language (standard library python3.11 - Interactive high-level object-oriented language (version 3.11) python3.11-dbg - Debug Build of the Python Interpreter (version 3.11) python3.11-dev - Header files and a static library for Python (v3.11) python3.11-full - Python Interpreter with complete class library (version 3.11) python3.11-minimal - Minimal subset of the Python language (version 3.11) python3.11-nopie - Python interpreter linked without PIE (version 3.11) python3.11-venv - Interactive high-level object-oriented language (pyvenv binary, v Closes: 1070133 1070135 Changes: python3.11 (3.11.2-6+deb12u2) bookworm; urgency=medium . [ Steve McIntyre ] * Apply upstream security fix for CVE-2024-0450 Protect zipfile from "quoted-overlap" zipbomb. Closes: #1070133 * Apply and tweak upstream security fix for CVE-2023-6597 tempfile.TemporaryDirectory: fix symlink bug in cleanup Closes: #1070135 . [ Stefano Rivera ] * Apply upstream patch to avoid a potential null pointer dereference in fileutils. * Apply upstream security fix for CVE-2023-41105 os.path.normpath(): Path truncation at null bytes. * Apply upstream security fix for CVE-2023-40217 Avoid bypass TLS of handshake protections on closed sockets. * Apply upstream security fix for CVE-2023-24329 Strip C0 control and space characters in urlsplit. Checksums-Sha1: bfc309967e7d92f5f94e530348c41fae151f1cac 15664008 libpython3.11-dbg_3.11.2-6+deb12u2_i386.deb 7a554f3534c79d6a177bf3efa22754d97c7b23ae 4905948 libpython3.11-dev_3.11.2-6+deb12u2_i386.deb 11e9f259834b3f7236021a10c8a4925f1cb76c27 814108 libpython3.11-minimal_3.11.2-6+deb12u2_i386.deb 34adfd9015d6d2befd2e16c41ebaaa87e7512049 1798328 libpython3.11-stdlib_3.11.2-6+deb12u2_i386.deb 52c13663386c9f833c9cfdd1a05f52b4bc51a1ea 2013036 libpython3.11_3.11.2-6+deb12u2_i386.deb 6e76f1193bd317261b49ed6e9c198a1f039b26f1 34870152 python3.11-dbg_3.11.2-6+deb12u2_i386.deb f5a8d3b20107ea3ff4ce02b5200c0a752afbb683 616080 python3.11-dev_3.11.2-6+deb12u2_i386.deb 5f056ba0f8d7ee7bb85c69db75a76e1aef104ab7 1292 python3.11-full_3.11.2-6+deb12u2_i386.deb 3a0aa9d4a658676450cbe35c039a6b7021863517 2131384 python3.11-minimal_3.11.2-6+deb12u2_i386.deb 06f93572a68fc2729bb64d0746edf5b15955b836 2119848 python3.11-nopie_3.11.2-6+deb12u2_i386.deb db2fdb79000c1767a07adfa187976629eaca31db 5892 python3.11-venv_3.11.2-6+deb12u2_i386.deb 5489c4909ee7f3136d40e9e059bb20bae94e9399 13310 python3.11_3.11.2-6+deb12u2_i386-buildd.buildinfo 232b71da212136dbf2c4d9d3c4d0de615712a0e8 572784 python3.11_3.11.2-6+deb12u2_i386.deb Checksums-Sha256: 7ad028ef3706707d2359225c3ad3d832b9e1cabd4f0f98c39288f4477bdc496a 15664008 libpython3.11-dbg_3.11.2-6+deb12u2_i386.deb be5879532b2a2a716491662b64201578411569c2424971820ec4d712bc3789bd 4905948 libpython3.11-dev_3.11.2-6+deb12u2_i386.deb e711bfc3eb8ee5c5dee28bee07b7e3ed4fa9cad8929a7af354babad24c2000f5 814108 libpython3.11-minimal_3.11.2-6+deb12u2_i386.deb f05be85fc4c74e7406b5b85cb5dd55c15c1db2f24a033ea0474cd89e769d1627 1798328 libpython3.11-stdlib_3.11.2-6+deb12u2_i386.deb 57006292d16c06a204d12b0d58c843bcc1d2bc04b358432615b3d40ca9ad5bbd 2013036 libpython3.11_3.11.2-6+deb12u2_i386.deb 5b545f8d547b92ceacab801a941a321266eb81b2c5bf276545b7147f34d35d57 34870152 python3.11-dbg_3.11.2-6+deb12u2_i386.deb 11eea8a824d7b3cdb8457437195f9a8caef55f7e2e79c3d3f30a45f7b0759dac 616080 python3.11-dev_3.11.2-6+deb12u2_i386.deb 4aa85922eea1128ca0e62a482f208b23991b3100ac24e31dedd58ef5746c0edc 1292 python3.11-full_3.11.2-6+deb12u2_i386.deb ac4a57c3e61fb73e23fb5d0e0965b21f561923177c1a1158c082fc46372dea28 2131384 python3.11-minimal_3.11.2-6+deb12u2_i386.deb 4e1949c971fcecfd138327beb6f48020a4b21a3dc3e393f1c27eced03091dfe7 2119848 python3.11-nopie_3.11.2-6+deb12u2_i386.deb 5b0c47294ec2a4bb95f5ef1bd9a95a23ef77d3a402e6462e27c2e1cfe846bc1a 5892 python3.11-venv_3.11.2-6+deb12u2_i386.deb 18db04d1ef07d33c455ccb0b3ddd339d4f691adb945ae7f6d1e8ccacaddcfd85 13310 python3.11_3.11.2-6+deb12u2_i386-buildd.buildinfo 0e6e5a40e177b76489298df92855a10a96dfe413eecbda81d2c5a4ea554bd829 572784 python3.11_3.11.2-6+deb12u2_i386.deb Files: c0547acea0fdc1ec69ff4b710c5a72b5 15664008 debug optional libpython3.11-dbg_3.11.2-6+deb12u2_i386.deb 81361eac0026fbb913ad9aa9e791b6b0 4905948 libdevel optional libpython3.11-dev_3.11.2-6+deb12u2_i386.deb 3377858e83de8856683e80b5523eea5c 814108 python optional libpython3.11-minimal_3.11.2-6+deb12u2_i386.deb 2d0043c87b492574384538bb9853dd3b 1798328 python optional libpython3.11-stdlib_3.11.2-6+deb12u2_i386.deb 9fc8b76e5e25568bf5d208fc41cf3120 2013036 libs optional libpython3.11_3.11.2-6+deb12u2_i386.deb 5451d0b02098ccf69c89798139ae641e 34870152 debug optional python3.11-dbg_3.11.2-6+deb12u2_i386.deb 6af6cb8ee6b4eb8e549096162863f497 616080 python optional python3.11-dev_3.11.2-6+deb12u2_i386.deb c24461055767481d0b720b442b8229af 1292 python optional python3.11-full_3.11.2-6+deb12u2_i386.deb 2e4be11d64d46ccbb57f779bd8a580d5 2131384 python optional python3.11-minimal_3.11.2-6+deb12u2_i386.deb d04b587c3d87295e7c93e15a1ff92899 2119848 python optional python3.11-nopie_3.11.2-6+deb12u2_i386.deb ce4e400ca90520352771e9757b38f21f 5892 python optional python3.11-venv_3.11.2-6+deb12u2_i386.deb dd8064da72c6db462e2c6ffd1ac7a4f2 13310 python optional python3.11_3.11.2-6+deb12u2_i386-buildd.buildinfo 190a19c92970a71af4e33a3a21d9faab 572784 python optional python3.11_3.11.2-6+deb12u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErEDrIdpJkzFMm6K+PyQET5WCY90FAmZMAkwACgkQPyQET5WC Y909qg/+Mb6COX1wGLBzA7m5TL5n5gVLqHzNgHYlW8TaJAokBnSM8x168mSkJ1Te wvrSl5pNMgLc5Qn0nUBn6kY3OXcrNKTSQ890g+UhxUa+DWNOLib/WbeXky8uVFVz dLi3B+X5Rs5fp8Ge57MoZd7QAoBPvM7nFTnvoWAMydDRYlXgCSV4HvdQ3Z6NhTdK NPmNAyfwDGQXmbhIj/0IrCMAW62jwPcwkajs/nDl2goVOYCPe/buW3ZIJi/FBMX/ 997CiPYMy+MdaEP8nKGTqe4B7kmY+BCh3TZWijJdQaevykkC0457NHMLKVYlc1At rQwWzTQZWRdPLXY5FAa3ZWdyON5oVtjh/16ygmBqqF7wVudLE7manrGrqR5WIkoM AwcYtovhWIQ039zJbGxaUS5dYI5phftHO0WQ3YuSFsx9qlAP+3qZRKeN4dQz7uRs Brbzx5n6V9MwbAl7wi1ia+7MeFdkwua4vEImWTWj5XtAndios2Qex9VQpLL3ib5k QsPQMiF+ezMVPpu5woeqPciImmje5FTSgLvX8EbTqFvUOvXoeFt/jvpJUA7Qb34T M3Nt8cbjpI/I87+9y+xTka/ylra1x4yX8PIzZm1LOEYrnfUs7inMfOl9oQ5ynMuL yMsBFa9d0pkbqeVTl9akH4WDsLqENjfbf3HeQUsbzzNsAv8r1Bg= =uCYC -----END PGP SIGNATURE-----