-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 03 Apr 2026 12:05:32 +0200 Source: openssl Binary: libcrypto3-udeb libssl-dev libssl3-udeb libssl3t64 libssl3t64-dbgsym openssl openssl-dbgsym openssl-provider-fips openssl-provider-fips-dbgsym openssl-provider-legacy openssl-provider-legacy-dbgsym Architecture: ppc64el Version: 3.5.5-1~deb13u2 Distribution: trixie-security Urgency: medium Maintainer: ppc64el Build Daemon (ppc64el-conova-01) Changed-By: Sebastian Andrzej Siewior Description: libcrypto3-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl3-udeb - ssl shared library - udeb (udeb) libssl3t64 - Secure Sockets Layer toolkit - shared libraries openssl - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-fips - Secure Sockets Layer toolkit - cryptographic utility openssl-provider-legacy - Secure Sockets Layer toolkit - cryptographic utility Closes: 1130650 Changes: openssl (3.5.5-1~deb13u2) trixie-security; urgency=medium . * CVE-2026-2673 ("OpenSSL TLS 1.3 server may choose unexpected key agreement group") (Closes: #1130650). * CVE-2026-28387 ("Potential use-after-free in DANE client code") * CVE-2026-28389 ("Possible NULL dereference when processing CMS KeyAgreeRecipientInfo") * CVE-2026-28390 ("Possible NULL dereference when processing CMS KeyTransportRecipient Info") * CVE-2026-31789 ("Heap buffer overflow in hexadecimal conversion") * CVE-2026-31790 ("Incorrect failure handling in RSA KEM RSASVE encapsulation") Checksums-Sha1: b8877890d40b3cdf075ad7c7f488c62f31df7799 2049732 libcrypto3-udeb_3.5.5-1~deb13u2_ppc64el.udeb d79bd84915dc26d98404cceddc57d872a9422c05 3125572 libssl-dev_3.5.5-1~deb13u2_ppc64el.deb 29e51e0691389d0328455c614cf32cdf6a052f17 401968 libssl3-udeb_3.5.5-1~deb13u2_ppc64el.udeb fe9dac113d3df1b641bc20eba40b215d7fe589d2 6250212 libssl3t64-dbgsym_3.5.5-1~deb13u2_ppc64el.deb b17c3c61e468b7d1b3096feac8b373bb30aa75e4 2503764 libssl3t64_3.5.5-1~deb13u2_ppc64el.deb b3f468b477cb3278a740dee73855a8491d7026ca 779296 openssl-dbgsym_3.5.5-1~deb13u2_ppc64el.deb c4be45fe4688a7fc563ca96b313a887d5640b398 1778684 openssl-provider-fips-dbgsym_3.5.5-1~deb13u2_ppc64el.deb e344dde4cfd8dda09f48708f1fabe9333cb9a31c 1077824 openssl-provider-fips_3.5.5-1~deb13u2_ppc64el.deb a782e7bdd1d8fa86d74b08159d29f4eab503614e 98684 openssl-provider-legacy-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 8b49d4a0e2851d0070c206511ab980652edf6499 311796 openssl-provider-legacy_3.5.5-1~deb13u2_ppc64el.deb 2d39f07c1934595ae91f6c8ad641794f8059acca 8845 openssl_3.5.5-1~deb13u2_ppc64el-buildd.buildinfo 17d362012b7f38519e9efdd3bf61164d392d31d5 1497360 openssl_3.5.5-1~deb13u2_ppc64el.deb Checksums-Sha256: d96a858da7faa1bd45e9045f55170638855b7f712b759977ba41cbaf311aa7fe 2049732 libcrypto3-udeb_3.5.5-1~deb13u2_ppc64el.udeb e323e0047bd7e4910a73aa0b61e71785da8f07d22e0da22f1989546d41554d13 3125572 libssl-dev_3.5.5-1~deb13u2_ppc64el.deb e7603ab5c8e3cd81e0b0b084d344f7fcac015491ef5b18f639acc0885a48fa70 401968 libssl3-udeb_3.5.5-1~deb13u2_ppc64el.udeb 27611cb189eb9a357102fbe6451e9c924c7d23d684884c9982b42f244190c972 6250212 libssl3t64-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 9b7aac1b5810b2c30daff95bd1dc6212803c9493e77f89a727f14d962bfed667 2503764 libssl3t64_3.5.5-1~deb13u2_ppc64el.deb 6691248316244733bfff4f7d40d9f6cc7041f7455b3f9ff0387c478ed47e64e8 779296 openssl-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 48ef7779e5a04a26199444e62371710b1a0233ec49de0df524ecb00acbe00452 1778684 openssl-provider-fips-dbgsym_3.5.5-1~deb13u2_ppc64el.deb a3b6edd32d93959163f5d805f8ca12f844be42ed04ddfe9923c34f540d605747 1077824 openssl-provider-fips_3.5.5-1~deb13u2_ppc64el.deb fe05e719c6ad57112a82418c546e954fed6369ba7ec276887c0e11a55805ac3f 98684 openssl-provider-legacy-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 4750d2a6573331517fd01ab4e7bdc5fcc663b183fefa7fb77c4dfed3b9e26e40 311796 openssl-provider-legacy_3.5.5-1~deb13u2_ppc64el.deb 216f69a474b5688e593a9b2b92dd461c72ddb87bf646433bf08774dd4ac197b5 8845 openssl_3.5.5-1~deb13u2_ppc64el-buildd.buildinfo 4e411084cbf9da557fdead1e1c1ba58b7a14b5e474621c381020928016cd3f55 1497360 openssl_3.5.5-1~deb13u2_ppc64el.deb Files: 56f3ea640c04e313efdca004c9d101dc 2049732 debian-installer optional libcrypto3-udeb_3.5.5-1~deb13u2_ppc64el.udeb 98922527456f73ef56db8d4c8a32b28d 3125572 libdevel optional libssl-dev_3.5.5-1~deb13u2_ppc64el.deb ac0270b02871243f18657a567ac78c94 401968 debian-installer optional libssl3-udeb_3.5.5-1~deb13u2_ppc64el.udeb 1fa60dd679257e456aa155070a109953 6250212 debug optional libssl3t64-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 59504065f1feabb69be94e02f4e51bc9 2503764 libs optional libssl3t64_3.5.5-1~deb13u2_ppc64el.deb 6cfe706994e11ebf50843f5ae3faa74e 779296 debug optional openssl-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 1d0e93dd234899dd49bc1f448989dad1 1778684 debug optional openssl-provider-fips-dbgsym_3.5.5-1~deb13u2_ppc64el.deb 52e00765c4fa2e36588c73254f1ea1a7 1077824 utils optional openssl-provider-fips_3.5.5-1~deb13u2_ppc64el.deb 49bc3737a0a1f87767d29080c0e36236 98684 debug optional openssl-provider-legacy-dbgsym_3.5.5-1~deb13u2_ppc64el.deb cbd687f2d1c236e516f7d70b4feec4de 311796 utils optional openssl-provider-legacy_3.5.5-1~deb13u2_ppc64el.deb de41eee2cce1fea7d90828e6d2b0eb25 8845 utils optional openssl_3.5.5-1~deb13u2_ppc64el-buildd.buildinfo d254b0bd80929e6b6bb47a7a6fbd35ac 1497360 utils optional openssl_3.5.5-1~deb13u2_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEDoRc43uRWMOoIqIgDNLUPhbmg7MFAmnP4UgACgkQDNLUPhbm g7NGpRAAqJHCKEKcWfei/NMQqgmNn9dI2v3cUeBjpHLuyiH7hYTassmOYe7tkySS IgEcbcU75ZC/ec6lptXvpVNP0GbTigv0gfalhEtuQCLrGQDIy7VKBWRaykozD5zM On2fTeuLEV0p6sOtPAkhC0Pm0++srwi9gT55ME/HAw8QsNcKp3CSFhAXXgqLflDf 7l4y45OAm9lX4WVaReuur6ZaO/+MEdSiJh/SDX1jNVxo7QymAJJ1lf8fXKKE17b8 25LBM7KGqHqRrDPmJgoQUJMaa8/ii+f/SyslsKkOEPGOZysohLtX6jXcvUwhkX5z IfjjrCwT+St6T0wNjZO1a50bq7lSmmSXu0jKdiIVwrjduJhtHaRgO+h/9j/MBFex 3j8Y0YHBnhTrsSfKAfo/GJnMNWXED/DVvtN2a4lwytnDS9mDYo8p1uIoeWvEXwYy dDtg7Yp9d+Tm/Bevc2J1MbFd5O5JRFWnmZ3PztHSFVmgVt9jT2BqeyKk9Jj+jKCS qgxfNZkAZm3IYwHLU/T5/JJpXghRChe7S1sY+r/IT3Yf6SemyK9mO0NR5q2oDeIg mrNbVO9lLbZNYvKD+StcHXFvKK6UpIkDa/v1mv324GXQLurL1QVx7FwjMIIgjdUN S2DRNqiPsX0mdNgW0iPny8OZKHR/MWqdPKRoCmevV2LPYRv/Kjk= =toU1 -----END PGP SIGNATURE-----