-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Sep 2025 21:18:35 +0200 Source: openssl Binary: libcrypto3-udeb libssl-dev libssl3-udeb libssl3t64 libssl3t64-dbgsym openssl openssl-dbgsym openssl-provider-fips openssl-provider-fips-dbgsym openssl-provider-legacy openssl-provider-legacy-dbgsym Architecture: amd64 Version: 3.5.1-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Sebastian Andrzej Siewior Description: libcrypto3-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl3-udeb - ssl shared library - udeb (udeb) libssl3t64 - Secure Sockets Layer toolkit - shared libraries openssl - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-fips - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-legacy - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (3.5.1-1+deb13u1) trixie-security; urgency=medium . * CVE-2025-9230 (Out-of-bounds read & write in RFC 3211 KEK Unwrap) * CVE-2025-9231 (Timing side-channel in SM2 algorithm on 64 bit ARM) * CVE-2025-9232 (Out-of-bounds read in HTTP client no_proxy handling) Checksums-Sha1: d502ef61fafd14b240bb8005af7b91136762322d 2013936 libcrypto3-udeb_3.5.1-1+deb13u1_amd64.udeb 94e4c4d18fe171c14af5ee41581120aafdf1db07 2955444 libssl-dev_3.5.1-1+deb13u1_amd64.deb a1c8e7abacf7452da3f5da2de5b02321ed54cade 371720 libssl3-udeb_3.5.1-1+deb13u1_amd64.udeb f395201dba6d39aa5f3061ba7e3de60b5c210ba2 6206880 libssl3t64-dbgsym_3.5.1-1+deb13u1_amd64.deb 2f0f4be30aa62c2a6d52c846cd62f8a69a822be8 2436816 libssl3t64_3.5.1-1+deb13u1_amd64.deb 5816305a1d33d7e602eccf28fde19e01c0c369b4 745240 openssl-dbgsym_3.5.1-1+deb13u1_amd64.deb a4c525112bc99403828516bb1d54ed6f4dd64cdd 1824020 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_amd64.deb 39f8bdbefc756097579b99cc22be2cc3587dbd4e 1096644 openssl-provider-fips_3.5.1-1+deb13u1_amd64.deb b6f525bbdff63ba91cb07225ac6c0bbf15724ca3 97128 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_amd64.deb bce4c317462d684033ac93763a0b9caf6cb157cc 306864 openssl-provider-legacy_3.5.1-1+deb13u1_amd64.deb 7e16c1996bd2fea827d18e8a0790081ee48fa8fb 8736 openssl_3.5.1-1+deb13u1_amd64-buildd.buildinfo 430acc6b57b5fc6e58f8f1f6bc9379c7dd8981ff 1494316 openssl_3.5.1-1+deb13u1_amd64.deb Checksums-Sha256: 6ec7754f14f54690bc3caa6105b469f01ce67fb83a1eeab61a79535715392b79 2013936 libcrypto3-udeb_3.5.1-1+deb13u1_amd64.udeb 9d4ae1840c3cb239afae4d3526e5a5093429d95f0f15d56a74d14486ac142afd 2955444 libssl-dev_3.5.1-1+deb13u1_amd64.deb 4f2d9e749ea2737a8fd47a4e33afe914082012c8de755727737b9bb018e149c8 371720 libssl3-udeb_3.5.1-1+deb13u1_amd64.udeb 57cab73c9659d330968b04f225857cce9f678dedee4622cca36f25c410e125ef 6206880 libssl3t64-dbgsym_3.5.1-1+deb13u1_amd64.deb a726a9113e32b6e593baab570db5d85589e92ef76a7a2c11bbd6c5260fb4adb3 2436816 libssl3t64_3.5.1-1+deb13u1_amd64.deb 3a06ade430de66c8c50f4d1cd29592b17c78332fd1baa11192808553047885f8 745240 openssl-dbgsym_3.5.1-1+deb13u1_amd64.deb 837e984743d61bf1ccaebd1c85b297b3c8f7a65ff87d6cb15ebd7d39f65bda8b 1824020 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_amd64.deb da0c8e60eb3be235e4f3cfcb4ac9d95512401e476c3641e1ddc0f550d74cca33 1096644 openssl-provider-fips_3.5.1-1+deb13u1_amd64.deb 7322d7d06fa1b8f1aa1302758f01999d976b0e20d1d5170d233a1317e46f7677 97128 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_amd64.deb 3c036239f4370d925d6fd0ffe9bcfd775c5252bfc01c8cb5b8a55e1696133944 306864 openssl-provider-legacy_3.5.1-1+deb13u1_amd64.deb 20934d85b8580253d1edfd1b7821f7b549d742ff43fcbf910147d3f35c553bbb 8736 openssl_3.5.1-1+deb13u1_amd64-buildd.buildinfo af00437bf10025c3ac98b920c569a262ca521272917469fc50724dad5b082338 1494316 openssl_3.5.1-1+deb13u1_amd64.deb Files: 038d4afab076207aed7c44754a567800 2013936 debian-installer optional libcrypto3-udeb_3.5.1-1+deb13u1_amd64.udeb 1ae8c3dae30fe655c09be198cfd6e247 2955444 libdevel optional libssl-dev_3.5.1-1+deb13u1_amd64.deb a077f373071f404983b1c0d867161305 371720 debian-installer optional libssl3-udeb_3.5.1-1+deb13u1_amd64.udeb 0379233dc3e8b03500f99f3986b2195b 6206880 debug optional libssl3t64-dbgsym_3.5.1-1+deb13u1_amd64.deb 2ad394f8dc606b04c6972737c4595738 2436816 libs optional libssl3t64_3.5.1-1+deb13u1_amd64.deb a3620175d9e51f93801cd23c21b3bcf8 745240 debug optional openssl-dbgsym_3.5.1-1+deb13u1_amd64.deb a6ac81a2855eb9a7ce82336451c53c16 1824020 debug optional openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_amd64.deb e61e2154edfd7a8d31a87df79dce880d 1096644 utils optional openssl-provider-fips_3.5.1-1+deb13u1_amd64.deb e681484fdfa5b0bf47c586960a941ef8 97128 debug optional openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_amd64.deb 6af01ed5d517b98a74ec7190dc7f5d99 306864 utils optional openssl-provider-legacy_3.5.1-1+deb13u1_amd64.deb e18729c9e3070bd3ae161fe8f29c0d04 8736 utils optional openssl_3.5.1-1+deb13u1_amd64-buildd.buildinfo 53d92124662e49de631632b47031c802 1494316 utils optional openssl_3.5.1-1+deb13u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnw0rdzqckKx6dwRTEbCLukZn24oFAmjW95cACgkQEbCLukZn 24rXVw//ZqlN935rYR0e03F0No9tkDDEaXMCZ0bCiWnxWGLeeaAMkPB6AWbSyi4O EYoKRMLxa3zzINxAvRp7ydCh6v1I7B3JWjWJ75Sq3cVMVuk2iR1HndSnfB/cbqCV dWLl/Jax/JalEeSoZIocWUiVE8nEfLcvP6Za6FrOBpGHMHMB2URyWp5ACygrlnSz +xmgQLSWX6qMIzoqEytmuwxJDf3XWC915V1HnK3lQKTyNWsG0xYU8p5X4vvqudpg weBSuGzwyW8CXaLL22gRmYCzsMDipVlnb27sZPx4Cu6i5C39PuOXxfsIJFxgcxpN IZQLnId/l8L73cEWYUXUiBXZ3s72M6w63NlHRoWhH/BvlvnNUQ0bb/KWPe3TtNFK sAJy0j7DAnmEyHfroBsU/r4m6dSeSJ1DgbI/L9oa65Wo7eqFdrD+QvG/+Ugmn7zc juhnegtsmKZHogD5GNPOjnTHlx5oKo3Ip1HXq+oyzBAq60IGO0QCpLBwaXXIw3Ky LpoyR5VfH3ssAyXENpHh0nuMmon3jpA0d+BmAEChnRtFyamQ2xBBomSyZJdEhLmV YJ0q7zgCP9LUvG16YEfloK8/OvDLOpfqj1aCuVdJWnz7Qv1jpPhFMFpLPFWbhw9B qn2dbRYdUl3GhgTg4ejC4j6rW86Kl/zSSZKpFEQNXdcEsFc77SA= =Xe/T -----END PGP SIGNATURE-----