-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 May 2024 21:28:59 +0100 Source: glib2.0 Binary: libglib2.0-0 libglib2.0-0-dbgsym libglib2.0-bin libglib2.0-bin-dbgsym libglib2.0-dev libglib2.0-dev-bin libglib2.0-dev-bin-dbgsym libglib2.0-tests libglib2.0-tests-dbgsym libglib2.0-udeb Architecture: s390x Version: 2.74.6-2+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: s390x Build Daemon (zandonai) Changed-By: Simon McVittie Description: libglib2.0-0 - GLib library of C routines libglib2.0-bin - Programs for the GLib library libglib2.0-dev - Development files for the GLib library libglib2.0-dev-bin - Development utilities for the GLib library libglib2.0-tests - GLib library of C routines - installed tests libglib2.0-udeb - GLib library of C routines - minimal runtime (udeb) Changes: glib2.0 (2.74.6-2+deb12u1) bookworm-security; urgency=high . * d/patches: Backport GDBus fixes from 2.80.1 - If local users send signals on the D-Bus system bus that spoof a trusted sender, do not deliver them to signal subscriptions for the trusted sender's well-known bus name (CVE-2024-34397) - Fix a use-after-free when subscribing to signals with an arg0 match rule, originally from 2.79.0 and necessary to make the test for CVE-2024-34397 pass reliably - Add a local backport of g_set_str(), required by the above - Add proposed fix for a race condition that can cause a unit test to regress after the above * d/gbp.conf, d/control.in: Use debian/bookworm branch for Debian 12 Checksums-Sha1: 00fee2a3f6f6bc9724ea6e8e4a686ef392151805 11227 glib2.0_2.74.6-2+deb12u1_s390x-buildd.buildinfo 90bed36a2cdb2226bf485db3f305ce48981691a4 3938628 libglib2.0-0-dbgsym_2.74.6-2+deb12u1_s390x.deb 701ab8128fa3a7aad8117ba732dcc089d8cf31f2 1283296 libglib2.0-0_2.74.6-2+deb12u1_s390x.deb 91b3761da7aa19b2cd1cb4f08abfbf7ce9815540 143708 libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb 6437642b14f7a2f5b55f7d52f6179d9e99e88880 104844 libglib2.0-bin_2.74.6-2+deb12u1_s390x.deb 582db7633cccf04db7a70fcc4ed5863673d1dc6d 68432 libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb 69e7bf51c3cdfb72e8003890d953732a30e4ce95 148840 libglib2.0-dev-bin_2.74.6-2+deb12u1_s390x.deb f51fe85a59629c36ae49988c5fe63d874f81be7a 1500024 libglib2.0-dev_2.74.6-2+deb12u1_s390x.deb 8cff31c2aa66fb96a64a8da4ac8888bb99ddd8fc 4200336 libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_s390x.deb ebed8b5661f7ff923eeadb7a7c3febc533826306 1685960 libglib2.0-tests_2.74.6-2+deb12u1_s390x.deb 4adec34f44374299c3ca13514b114d60f795fb41 2150360 libglib2.0-udeb_2.74.6-2+deb12u1_s390x.udeb Checksums-Sha256: 77c0de2dc684062738b118fd53d96303ae464ea0704c87860cd29ad146816268 11227 glib2.0_2.74.6-2+deb12u1_s390x-buildd.buildinfo f380e6c5b693760b22fe5212609732a934955b12a6452970a884798dba3a1531 3938628 libglib2.0-0-dbgsym_2.74.6-2+deb12u1_s390x.deb 6c1005a7b68d6f73bf536660c554d46e30fc08e959eae64c59c666354798678c 1283296 libglib2.0-0_2.74.6-2+deb12u1_s390x.deb 9cf17e34ab74c38df2970bc05a200827a04bf188e73f12e7ad0dae13b11113a9 143708 libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb eb5895eeab897607d1b9706ce1c6ad1ab32693f304a20455fb8ea9f033df45bf 104844 libglib2.0-bin_2.74.6-2+deb12u1_s390x.deb 44a39bb461582bc54c676d01cdd2bc150f6e21644b9ba17ac52b5608094ab2c5 68432 libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb 5417c6a374c963831a419311109be3884411b687415947fdd1797e3d1f847dbb 148840 libglib2.0-dev-bin_2.74.6-2+deb12u1_s390x.deb fc19cc0537253f28590bdd4cad2d5175e6986aa487b2a92b65049e068cf88813 1500024 libglib2.0-dev_2.74.6-2+deb12u1_s390x.deb 91ea202b3591e62695a6e6fcd472b34a38af470a2939338294b37337f3d5f5c7 4200336 libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_s390x.deb 987dc15a6f2dcf16a80775cc85e1e13bfb5924e1e6f24b1cc25a629898a070df 1685960 libglib2.0-tests_2.74.6-2+deb12u1_s390x.deb 9a1209e3fef6135c74baf0f78f995d87ce30ae18c0f3142a0deb84e63a23ff80 2150360 libglib2.0-udeb_2.74.6-2+deb12u1_s390x.udeb Files: 85ce8804a60c21490c7dde3eff7819ee 11227 libs optional glib2.0_2.74.6-2+deb12u1_s390x-buildd.buildinfo af4501194618bbc6030586330008ac5f 3938628 debug optional libglib2.0-0-dbgsym_2.74.6-2+deb12u1_s390x.deb f3fac0ac3c647c37b59eaea269476081 1283296 libs optional libglib2.0-0_2.74.6-2+deb12u1_s390x.deb 8f351a5564834ba07c9a9d086ca2a470 143708 debug optional libglib2.0-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb 942c55cd5037fe24370e1389d6bcd0fe 104844 misc optional libglib2.0-bin_2.74.6-2+deb12u1_s390x.deb 2530a17c0dc25335bbb435a5529c7871 68432 debug optional libglib2.0-dev-bin-dbgsym_2.74.6-2+deb12u1_s390x.deb 61a65df8f73a0161039f25962989ec1a 148840 libdevel optional libglib2.0-dev-bin_2.74.6-2+deb12u1_s390x.deb 0dd7784845ca3410cf59128494b45e02 1500024 libdevel optional libglib2.0-dev_2.74.6-2+deb12u1_s390x.deb 31a12e00387792074ed7f5d658e90943 4200336 debug optional libglib2.0-tests-dbgsym_2.74.6-2+deb12u1_s390x.deb 0231c8b3d4b6e3e5010a95ffdcbeeaa3 1685960 libs optional libglib2.0-tests_2.74.6-2+deb12u1_s390x.deb ea97228b39e2e687b79b27e693f5c5c2 2150360 debian-installer optional libglib2.0-udeb_2.74.6-2+deb12u1_s390x.udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEctqRAwcjFMIrbct74euoNlQ3ywQFAmY6O0kACgkQ4euoNlQ3 ywRBTg/9HWvtjx2XOPk8vUWwWSaACBd6K65/U+tOQ8E27qDtYsL7nkr8BZLOiif+ bSdhofB6jn8CqCWrxbubi8+AvLTrGlk8LeXtY5SaY5abqN+7w/EU20ll3MuqnbM/ F/IEVei/uWhNdRKizc2+6We4AviwU66JrRpL0FXeQQUYegpGSiJwI+LtzypoQE8m gUqjU79KRZkxNMCPHHBxE0/e8vgygRMaxJiLv6mwDaMCQGGABE2R6aAgeWUYIwPu /VXRRgEWNVwJSU4MkLD3+Is0KvhrByNjniqpH/iGItpNwz3i3oGJi/K7mLjDVXzB auaqgMvibhBaxWPwbotWtLECIXnbLvh2VummXHm7Q+RGBmAcex5YsIVMM2j3r0y7 zO+qCnc2Q6xRUSz4MDPjcTfhTY/psvYm/+lpBnfuCO3IrHHT38z1IgfQOqT7DOau D79w7bJ7KQBzF9O9yYQk0erL1OaNLByuFzuNMRC8fa/d8OyM4TKCia7qu/zLcaU0 GbVepOoS9eDc/9RBzEX0Pb3mo8r6mkTJqhyJ2djwKWNom8NUJQhdQvKWG4dXvkoC CxFjo0D6Rjdw9EhZ7cF4KyvEOhdMrQJIlBhHdr3gcc0ZpoZSA6fvRYMld2d4IvtN ysJa45oRWOAKySGix0b0jhLPZ0lpDuWzYJSlmtP2TSG6WhxJKL8= =J4W6 -----END PGP SIGNATURE-----