Accepted opensc 0.19.0-1+deb10u3 (source) into oldoldstable
- To: dispatch@tracker.debian.org, debian-lts-changes@lists.debian.org
- Subject: Accepted opensc 0.19.0-1+deb10u3 (source) into oldoldstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Mon, 27 Nov 2023 00:20:18 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: opensc_0.19.0-1+deb10u3_source.changes
- Debian-source: opensc
- Debian-suite: oldoldstable
- Debian-version: 0.19.0-1+deb10u3
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.seger; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=S1EB/7QRmXKU59HrrwWdZMr3ejOhfPRH3s/tXP1r/Ls=; b=gXjssglFlLf0tL2wWAFPmxXhUM 0x4Lqzk1Q/Q+WK73SnSHwJ8DaAuGsQ+VkL8eXWzBNmWem3F2K8iwdzWqZG8BdeRMLGF05rzuLJNcS 7fQoNf3S+I+vKOjSr5jve+TItGdOqpK0ngyFfEgUPdqj6rtZy9o9bbY+AE4UBp32y2rl/NpCYnTmM oGFW143WVYOtDXFJHPOBtFl46RQtrzC4hqLNav9gYj22QwYuWRWkTa/Z9wqFrZvPDJm7E2g+pFtJL E45vTy9VM6WR5UPWuGYbVSYxSnT5n50E5PbhvcBAARaKafyi7G27qZr1cdKLkB6scyez7zPQCgaKq TR7VBvrg==;
- Mail-followup-to: debian-lts@lists.debian.org
- Message-id: <E1r7PMI-002ykN-Iq@seger.debian.org>
- Reply-to: debian-lts@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 27 Nov 2023 00:20:37 +0100
Source: opensc
Architecture: source
Version: 0.19.0-1+deb10u3
Distribution: buster-security
Urgency: high
Maintainer: Debian OpenSC Maintainers <pkg-opensc-maint@lists.alioth.debian.org>
Changed-By: Guilhem Moulin <guilhem@debian.org>
Closes: 1055521 1055522
Changes:
opensc (0.19.0-1+deb10u3) buster-security; urgency=high
.
* Non-maintainer upload by the LTS Security Team.
* Fix CVE-2023-40660: Potential PIN bypass. The bypass was removed and
OpenSC implemented explicit logout for most of the card drivers to prevent
leaving unattended logged-in tokens. (Closes: #1055521)
* Fix CVE-2023-40661: Various security-related oss-fuzz issues, such as
stack or heap buffer overflow. (Closes: #1055522)
Checksums-Sha1:
fdf5e1514a272f55b04d404d4cc332ad0fb42242 2159 opensc_0.19.0-1+deb10u3.dsc
4d27bb46db74f9835d3491a1fc05cc1e2b083282 32352 opensc_0.19.0-1+deb10u3.debian.tar.xz
2181c5f6c5adb32b75301fb3a080be4800048f75 7937 opensc_0.19.0-1+deb10u3_amd64.buildinfo
Checksums-Sha256:
3ac08decd5958cc3c75a22123ffe0c3294dda98c9d0d6bc39724e1059e2045a6 2159 opensc_0.19.0-1+deb10u3.dsc
decd7d4d6b88d55552c3a241daddd77cabf9d94b2937040bd3cd0945b463dcc1 32352 opensc_0.19.0-1+deb10u3.debian.tar.xz
40e8b032fa52f5e31d4f5c932c6f818b3664af7978a70b39f380170dd0876363 7937 opensc_0.19.0-1+deb10u3_amd64.buildinfo
Files:
84b789e786773c43578321434f591afb 2159 utils optional opensc_0.19.0-1+deb10u3.dsc
0426deb1fd7f66b106d816930faebcfa 32352 utils optional opensc_0.19.0-1+deb10u3.debian.tar.xz
2c57d89edfea4f786f05d815518bba77 7937 utils optional opensc_0.19.0-1+deb10u3_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=G5gI
-----END PGP SIGNATURE-----