-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Sep 2025 21:18:35 +0200 Source: openssl Binary: libcrypto3-udeb libssl-dev libssl3-udeb libssl3t64 libssl3t64-dbgsym openssl openssl-dbgsym openssl-provider-fips openssl-provider-fips-dbgsym openssl-provider-legacy openssl-provider-legacy-dbgsym Architecture: riscv64 Version: 3.5.1-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: riscv64 Build Daemon (rv-osuosl-03) Changed-By: Sebastian Andrzej Siewior Description: libcrypto3-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl3-udeb - ssl shared library - udeb (udeb) libssl3t64 - Secure Sockets Layer toolkit - shared libraries openssl - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-fips - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-legacy - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (3.5.1-1+deb13u1) trixie-security; urgency=medium . * CVE-2025-9230 (Out-of-bounds read & write in RFC 3211 KEK Unwrap) * CVE-2025-9231 (Timing side-channel in SM2 algorithm on 64 bit ARM) * CVE-2025-9232 (Out-of-bounds read in HTTP client no_proxy handling) Checksums-Sha1: cdd2d3cd761137431dd02435076ab5573f12998b 1803576 libcrypto3-udeb_3.5.1-1+deb13u1_riscv64.udeb e1a9116c99aedc442a95d25d5483ea0fc5be5092 5798860 libssl-dev_3.5.1-1+deb13u1_riscv64.deb 7d7c5be6c874cd3ee4090df80d1af6540e04b1bb 378488 libssl3-udeb_3.5.1-1+deb13u1_riscv64.udeb f0548b02cfa9f63fd2647fe0e17e1916ae746a25 5782376 libssl3t64-dbgsym_3.5.1-1+deb13u1_riscv64.deb 230d7739fdd33ffcd7868e801e2181550bfc5cc9 2221128 libssl3t64_3.5.1-1+deb13u1_riscv64.deb ef526592f12d3c58866c5058c5b3de4327824c37 732992 openssl-dbgsym_3.5.1-1+deb13u1_riscv64.deb f30a490ab842357421c3fca49f67288bedf5f5f9 1657024 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_riscv64.deb d14d7f30bc3eca361eb35e6206d81c15248514db 879540 openssl-provider-fips_3.5.1-1+deb13u1_riscv64.deb 675b3931dc1b269b38b72e0233bf8c60350f7c03 92152 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_riscv64.deb c753f886a8e3f9ba014847757274e63223b3ae4d 307592 openssl-provider-legacy_3.5.1-1+deb13u1_riscv64.deb 3ea01d6a77b4df87ee0b6621e106ee3e8df47cae 8731 openssl_3.5.1-1+deb13u1_riscv64-buildd.buildinfo 37f8429016c407cf18c631e2e879c72552de3d18 1473984 openssl_3.5.1-1+deb13u1_riscv64.deb Checksums-Sha256: 359f6d9f2b87c80742989c1ca0c9368fe7bb77a1482202468f8473eb64aa400d 1803576 libcrypto3-udeb_3.5.1-1+deb13u1_riscv64.udeb c92e71586387d139052be63d05b5c1a36847e6056e696c23e6c4b8595b646954 5798860 libssl-dev_3.5.1-1+deb13u1_riscv64.deb e730b2ad1046bfcb6f05a1a8e778244540b5be28ca722f14fff3c8235cdeb2e6 378488 libssl3-udeb_3.5.1-1+deb13u1_riscv64.udeb c557e15974cc533d9801e982f9f36f2b206edf99e268f599314974c85d113d59 5782376 libssl3t64-dbgsym_3.5.1-1+deb13u1_riscv64.deb 3af1b1ae1fb8f91f51ebdba6ebdffd71d45677bbbe327c3aef2c542082706421 2221128 libssl3t64_3.5.1-1+deb13u1_riscv64.deb fd532b341922198c3b268b6e649ffff68f05bb98ef9fe758aff8e91c175a0343 732992 openssl-dbgsym_3.5.1-1+deb13u1_riscv64.deb a489b049e47c5157a397e84dd6cf78cc1a9bdd369c4ca2ecb8eb2280178b7802 1657024 openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_riscv64.deb 4d898678516a8ccb613db5ff99d1f4dea64cc73dfd19ddc5c5e5e0a8e9593d83 879540 openssl-provider-fips_3.5.1-1+deb13u1_riscv64.deb 14e10ea8eb45387e47de30007e6a74c58ad2436d61289107bc64047a4eace4a0 92152 openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_riscv64.deb 55a5c74da4cc88bf67241471f89bd296e0ce0d9288de1a943456037878c57972 307592 openssl-provider-legacy_3.5.1-1+deb13u1_riscv64.deb 5b3cfe36fe9bdd81ffa8eb0ef9bdaae3751213775090193373d037a3df0ac967 8731 openssl_3.5.1-1+deb13u1_riscv64-buildd.buildinfo 67c27a56f8eb5a97b46912e1a0cbfa172883658a4ae6c033919376542da42fcb 1473984 openssl_3.5.1-1+deb13u1_riscv64.deb Files: b9034bdedd81eba385acb96a58e885c5 1803576 debian-installer optional libcrypto3-udeb_3.5.1-1+deb13u1_riscv64.udeb bb5569c3868dd1c6026d9a209095d47c 5798860 libdevel optional libssl-dev_3.5.1-1+deb13u1_riscv64.deb 59991373cb63aab1a71bc1dd7f01e801 378488 debian-installer optional libssl3-udeb_3.5.1-1+deb13u1_riscv64.udeb 07760ad8d40ddf98ed2b9d3c14472ab2 5782376 debug optional libssl3t64-dbgsym_3.5.1-1+deb13u1_riscv64.deb ffc2c19665ae860d4173bd77b01a453e 2221128 libs optional libssl3t64_3.5.1-1+deb13u1_riscv64.deb bf7c80ccd5749c78600d26220026ad83 732992 debug optional openssl-dbgsym_3.5.1-1+deb13u1_riscv64.deb d147d3c8879eec54c0479a0401a5fe48 1657024 debug optional openssl-provider-fips-dbgsym_3.5.1-1+deb13u1_riscv64.deb 812d913329ac32850859d4487395e659 879540 utils optional openssl-provider-fips_3.5.1-1+deb13u1_riscv64.deb 7cd7744aad04c052d3da806d64746b77 92152 debug optional openssl-provider-legacy-dbgsym_3.5.1-1+deb13u1_riscv64.deb 5b1dc53e159841b4552f39750cd01707 307592 utils optional openssl-provider-legacy_3.5.1-1+deb13u1_riscv64.deb 02cfca311cf285463e7077d7a78d327b 8731 utils optional openssl_3.5.1-1+deb13u1_riscv64-buildd.buildinfo a2d04edbbdedbc5a19ed2e00abd5a7c2 1473984 utils optional openssl_3.5.1-1+deb13u1_riscv64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEHGDtw10vnHTL00OpqK0crxoR+pMFAmjXJhAACgkQqK0crxoR +pPpqRAAqtu0+ui/eaA9401VaLZGKuBrVeigPafKrvHexbyZd8/P8XJkGQwrA+It oNkTDENR70vS5o/KdBlTZnP9Fyz1Nfu35C2RZWYIioo78chZdLCjMBwUPyKIb5hx saFePo3Ojq3zcox1tVXqWcZRgv3jOiPIP5GjbIp0h9p0bacJX8Rj8y0iuVVw8Z/K uT+HR+FOds5X65Y4mNAY0kr38AnfSgZasL9Bx3UH32bGdYJBye0sDoSqae2+bYl6 4ca+rnPNn4wOb4vlSI2HhWrpKPdpUIyJ3rtlQPOb4WfePg61aeDQ17v1VhuwtkJ4 uZgQZMm2CmNOtIhS+8dpBn9c1bkCkdpxd9V5q4acVzCYG3P9TqGSnkYt2ucvoRwq wqc9L3fgwDOJAfNnLVT4N/lE33btLWow8N2k7PrTaEV13YoVRibY2uqnsQmkhmCV mHNOUohG+rLN4cRpf/aeLahx9tM5VoTst5X+rD54eTlDzVCZ5vAsJfZEksJTaBOh QXv86E2+Re/nPk9tpOG9ZP2xZTFyofWZB/gAIAUlGRnElG7bKSpf5iqOG0M7/xec lKYYer2PFK0Yij3gnsiTumEqyjdbxMCyh/yhZkRPfWxrZyYsSu6/QX/84eNzcx7+ DOyInTqwMVFMTH4Scwfof+GiEoAcwoVdx9ivbVPqdZ4oTUxo9rw= =1VWc -----END PGP SIGNATURE-----