-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 17 Oct 2025 20:26:34 -0300 Source: libsmb2 Binary: libsmb2-6 libsmb2-6-dbgsym libsmb2-dev Architecture: s390x Version: 6.2+dfsg-2+deb13u1 Distribution: trixie Urgency: medium Maintainer: s390x Build Daemon (zani) Changed-By: Matheus Polkorny Description: libsmb2-6 - Libsmb2 is a SMB2/3 client library (library) libsmb2-dev - Libsmb2 is a SMB2/3 client library (development) Changes: libsmb2 (6.2+dfsg-2+deb13u1) trixie; urgency=medium . * Import upstream patches to fix CVE-2025-57632 - When processing SMB2 chained PDUs (NextCommand), libsmb2 repeatedly calls smb2_add_iovector() to append to a fixed-size iovec array without checking the upper bound of v->niov (SMB2_MAX_VECTORS=256) * d/p/CVE-2025-57632-pt*.patch: Import upstream patches to fix CVE * d/p/CVE-2025-57632-pt2.patch: Backport patch and Update hunks' offsets * d/p/CVE-2025-57632-pt3.patch: Backport patch and Update hunks' offsets * d/p/CVE-2025-57632-pt4.patch: Backport patch and Change hunk to reflect new code indentation Checksums-Sha1: 149bce8ae19d946aeb1e4d84390726c43eeb72bc 284472 libsmb2-6-dbgsym_6.2+dfsg-2+deb13u1_s390x.deb b0a0f9fec0e7492d7598a2286946bcf49c36889c 94416 libsmb2-6_6.2+dfsg-2+deb13u1_s390x.deb 76327a8012800be2ed738b525b5feb9423c75bf0 131732 libsmb2-dev_6.2+dfsg-2+deb13u1_s390x.deb 4e265509119bdd3f56007b8db9c31b1eefa417e8 7168 libsmb2_6.2+dfsg-2+deb13u1_s390x-buildd.buildinfo Checksums-Sha256: f0cf29b122abd543dda7ef2e1fc83cda14495421ac5ccf17abbb71e9da57dd95 284472 libsmb2-6-dbgsym_6.2+dfsg-2+deb13u1_s390x.deb c1de70701f9ec86407c4f520f7b3d4cc565dbed6b7d25f278c9d45651317706b 94416 libsmb2-6_6.2+dfsg-2+deb13u1_s390x.deb 341efb881269b497ed4ab48dc176f5a7b85a64a32c839729b91a6e7b6eddc3c1 131732 libsmb2-dev_6.2+dfsg-2+deb13u1_s390x.deb 59c6d3a4c351e35e0f79a8475b639a8355c8c961a387c227e992f5b62a51c05e 7168 libsmb2_6.2+dfsg-2+deb13u1_s390x-buildd.buildinfo Files: 11db18dcce98f87e8cd711c27f2c2fa3 284472 debug optional libsmb2-6-dbgsym_6.2+dfsg-2+deb13u1_s390x.deb 872fe8a0469d417034c25fc959f40b6d 94416 libs optional libsmb2-6_6.2+dfsg-2+deb13u1_s390x.deb 0e2d832fdc34a94f63597c921eb8c08b 131732 libdevel optional libsmb2-dev_6.2+dfsg-2+deb13u1_s390x.deb 286842f1351d193e35c2f138eee8affe 7168 libs optional libsmb2_6.2+dfsg-2+deb13u1_s390x-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEgh4msZ+e2PZfd5KckaCrxAR3BY0FAmkHsgIACgkQkaCrxAR3 BY301BAAhm12RzPRsSadLZbcevJfr/f7ZnxOcpwy5/VBEUcvrg/CyQqDFoS0v6+t wu8x8gzJuq75/e09pQLbSRN1RIyzVb53JSTHBtOPKK/vAn6tUEzimJPSY876tpxn 1qCSYBuapojGnluGXcKn1MLI5OtqB7v6hfAA0zhdKxSChCTBiz1N40flUtlOVLbB 0OLTLOwl7cLaYCVsgmY80x0COUNp4Hvm6N6REIlV6OOXUBsHyp1Vmxi4yjxUvTGq GCNXAiV0oM1Pkkq+VvGe2SC6AiK5SUJQ7uBOvze0CFbwPY6Kq7vwJsSS4ot2NSHq rSkefFT7xYxaycc1UF2BOndGWrJ+jowH5/iv/aLd5FvalCXOGa2LE2JkkOdd4Wgm QI8D7PVInASr/6TYPvTN8CsX1x0I0a27lfunFPMa3GuHJYfTMt4OAp9O0RZE7+4g MWBd04c1Pdy9ZYRwnkQBqzpGUSPgXMmUyhPSuV9J/LUfwRlUPobvFV0HncaWxqCK +v8+Wq21cstf9JABNa5EaU2HA2zH5NRdvpenirKboNZ2VPaMDqezpG03aMpTBGdP 3v/wKDobdzXXl8508ogDpR1Jssvaq5DIoqXLnFKqqHTOYgNk6r1qWsywusrCHzxV URGrHAFp4PL9ZM29NyWT5X6AmC/vBtntpcM0bYMzHvu8c/icaow= =wWPr -----END PGP SIGNATURE-----