-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Sep 2025 21:18:35 +0200 Source: openssl Binary: libcrypto3-udeb libssl-dev libssl3-udeb libssl3t64 libssl3t64-dbgsym openssl openssl-dbgsym openssl-provider-fips openssl-provider-fips-dbgsym openssl-provider-legacy openssl-provider-legacy-dbgsym Architecture: arm64 Version: 3.5.1-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: arm Build Daemon (arm-conova-03) Changed-By: Sebastian Andrzej Siewior Description: libcrypto3-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl3-udeb - ssl shared library - udeb (udeb) libssl3t64 - Secure Sockets Layer toolkit - shared libraries openssl - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-fips - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-legacy - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (3.5.1-1+deb13u1) trixie-security; urgency=medium . * CVE-2025-9230 (Out-of-bounds read & write in RFC 3211 KEK Unwrap) * CVE-2025-9231 (Timing side-channel in SM2 algorithm on 64 bit ARM) * CVE-2025-9232 (Out-of-bounds read in HTTP client no_proxy handling) Checksums-Sha1: 8124d822759465db48d96e8454991e06df2b5b3c 2335040 libcrypto3-udeb_3.5.1-1+deb13u1_arm64.udeb 961e3daa6ab5bde114864d084b41e1136b4e806e 3383564 libssl-dev_3.5.1-1+deb13u1_arm64.deb 692192fdcf178742c4908efa4959cc77dba25834 340192 libssl3-udeb_3.5.1-1+deb13u1_arm64.udeb 3bf2c343825988a5106e19b07894d5846d6a8fda 5995348 libssl3t64-dbgsym_3.5.1-1+deb13u1_arm64.deb ff655298a0a867bd41e303c6608bf33c6edce389 2747328 libssl3t64_3.5.1-1+deb13u1_arm64.deb 545ad53df3e8522b46650efd3e9d23f0e67c91f6 761924 openssl-dbgsym_3.5.1-1+deb13u1_arm64.deb bbaba9910ee86edea4bd5bfb36dc62ffc0b12c1c 1707376 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_arm64.deb 01823d364583736d7addcae9a907cfdbe662a837 986720 openssl-provider-fips_3.5.1-1+deb13u1_arm64.deb 7cdd6151dde258d5f0f09376ef09540e2bc84917 91564 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_arm64.deb 2e2aa40aaca0ffe4a36ae09b9d15d48c2179afbc 304988 openssl-provider-legacy_3.5.1-1+deb13u1_arm64.deb 4d192f5e705f20fd1fd5ed89a5c96652678c5c45 8720 openssl_3.5.1-1+deb13u1_arm64-buildd.buildinfo d65a0c3569720bc141406153a7f0cfa68ffd8ecb 1457984 openssl_3.5.1-1+deb13u1_arm64.deb Checksums-Sha256: 444b3590d0e3500a99c04c164367e1ca42bfa33e8b8b2839dbcb34fb1526c409 2335040 libcrypto3-udeb_3.5.1-1+deb13u1_arm64.udeb 8a2aa7615dfba0b809faac896b0162285ee7f53362038f55b4c8019baa543589 3383564 libssl-dev_3.5.1-1+deb13u1_arm64.deb 95f856dab6035274007168ec3dc6597391eb7b219e5365c9bce47e92465d83bb 340192 libssl3-udeb_3.5.1-1+deb13u1_arm64.udeb 3643ca91ec838f8b933166192ccf32a843039cf9417964758d35bc60fac0d52e 5995348 libssl3t64-dbgsym_3.5.1-1+deb13u1_arm64.deb 297fe9114069003f8812aaba4dad4ebc6fceed9712140f5ff085972de13d05e9 2747328 libssl3t64_3.5.1-1+deb13u1_arm64.deb 84e8cf27151f976f88365737653f64f0005451a60a24419aa40e3b9cb28e65c9 761924 openssl-dbgsym_3.5.1-1+deb13u1_arm64.deb aa84b4886d4a9302830cb8345820d7f4e4e2394a7e0200e0066ecd73fefc96a3 1707376 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_arm64.deb b809b00ccbb5fe4a18502e1ff8bcc2a79c1005bee5efc8922e734501b23330e6 986720 openssl-provider-fips_3.5.1-1+deb13u1_arm64.deb 0ee6870bfcde67b0893ee983f56c502ae80a88aa30a224508cc26012a2e17b95 91564 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_arm64.deb b4f49920324cffe59358058cd70bf5fd5017852fa646c67e85ce8416a88aa588 304988 openssl-provider-legacy_3.5.1-1+deb13u1_arm64.deb 2768eb4024f03a269a04ca6984a43249cf4e722e81acaa01cda10749af06c550 8720 openssl_3.5.1-1+deb13u1_arm64-buildd.buildinfo 836e613a81ce7261d9a44058f96d9247c6880d660e6b9893763db95107f50fd4 1457984 openssl_3.5.1-1+deb13u1_arm64.deb Files: 1dc66ef6d1ec47adbe1afca8b73a183d 2335040 debian-installer optional libcrypto3-udeb_3.5.1-1+deb13u1_arm64.udeb 2f6694dd6a9463f13f9314e663401b8a 3383564 libdevel optional libssl-dev_3.5.1-1+deb13u1_arm64.deb ff1208cbc242f34b7d6c04fdf9be6ad0 340192 debian-installer optional libssl3-udeb_3.5.1-1+deb13u1_arm64.udeb 0483554c681f14427a51659e72d955dc 5995348 debug optional libssl3t64-dbgsym_3.5.1-1+deb13u1_arm64.deb 7596b003657fc281719d0543e7bfde0f 2747328 libs optional libssl3t64_3.5.1-1+deb13u1_arm64.deb f5aabbb2a781b4a640666a622256c5ce 761924 debug optional openssl-dbgsym_3.5.1-1+deb13u1_arm64.deb 4270d2fe81d52ca3c4f1f2b78f0a6e4d 1707376 debug optional openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_arm64.deb da221f171f33a821ba77b54354712783 986720 utils optional openssl-provider-fips_3.5.1-1+deb13u1_arm64.deb 28b7654b7c6900765c4a409df1c9b6f1 91564 debug optional openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_arm64.deb daf427d620738ec2bbf6037556f92d0a 304988 utils optional openssl-provider-legacy_3.5.1-1+deb13u1_arm64.deb 925c2935ec3a93b8215a136e2f7afc55 8720 utils optional openssl_3.5.1-1+deb13u1_arm64-buildd.buildinfo c1116242b31a87d41417673b3bced69e 1457984 utils optional openssl_3.5.1-1+deb13u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEVM4SKBZumztS8zr3lST9Us03ywsFAmjXAGgACgkQlST9Us03 ywtWzRAAvXv73srbr/FzHa08uka9vWf1UvVydMzbaYzYBwBYDBmBxex/tGGs0bJN B6zk/nPnLlFbaopAa8JonXvR5fjugq81+jcaUz+WPk2Qqar7s0BfzeyRib1eHuWW KmTSCbhtKx2ECdGrK3sgSOYn75VTV1GV2AzYWd/xbSvDhqIl2TDwybgViR8I4kXb GHdjRlGhBH/ut6R7FkrLSSDPFoJ2UNiQ4BFhmjGtGMo8MShkS5zdXMzNoGQWB8qJ Mthk8HwDr5D9pZRWAZh6NpPETeVqMAIw+0+tmkfifnC0RtbZiC6t6p8erJj55YcT fS21yZ7DMlMASGQ+oV53f0rBBOJdhm9IDzotVGVlA0Mx4DZ8P8dz8cztz6m34ewS VrQDTrldHf9fg6Qv02/Wog4odFBA6H4INVxnnh3PJBtZMqOY+Yky6hNcib+8eDU7 aGadXGh6uH0VfzpV2nwqF5zSWl+EYTR8bvfOp/skVEvK6rp7jPC/ie+ebyCRwIeJ 3tpPTRsNeFWR04xpR54g+SNrFcEdO3udiDyEsa8orKqFEs/gYb8RQNSRjPTwcVXe DCec9F6P6WYvjrtSutvCwkFZDkA03+Xcb0VsWmADRBUnMkxaXPcqz9bkEbNwU365 QDgqd6mwlYmYZw08FMVOMe9feV8Spu5x6XFPo0m7NstNLeEY8Jo= =ssRM -----END PGP SIGNATURE-----