-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Mar 2025 14:53:42 +0100 Source: libxslt Binary: libxslt1-dev libxslt1.1 libxslt1.1-dbgsym xsltproc xsltproc-dbgsym Architecture: amd64 Version: 1.1.35-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Salvatore Bonaccorso Description: libxslt1-dev - XSLT 1.0 processing library - development kit libxslt1.1 - XSLT 1.0 processing library - runtime library xsltproc - XSLT 1.0 command line processor Closes: 1100565 1100566 Changes: libxslt (1.1.35-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix UAF related to excluded namespaces (CVE-2024-55549) (Closes: #1100565) * Fix use-after-free of XPath context node (CVE-2025-24855) (Closes: #1100566) Checksums-Sha1: 179352bc762187a01c5c28f9bbb6815dd16935ec 345272 libxslt1-dev_1.1.35-1+deb12u1_amd64.deb 8cf9a041c9af380f58482e5a1a229c4a2b1d6120 344476 libxslt1.1-dbgsym_1.1.35-1+deb12u1_amd64.deb 6bad299021d400de8d990da04744fee821a489c0 230780 libxslt1.1_1.1.35-1+deb12u1_amd64.deb 6845c03db749d2380574c81ae6cdf91b3a094240 7332 libxslt_1.1.35-1+deb12u1_amd64-buildd.buildinfo 534e7aa8348822edf9ff02f51f02af107b88bd2e 29640 xsltproc-dbgsym_1.1.35-1+deb12u1_amd64.deb 93c968941755aa67a0b558a49678d5d5ba6b718a 114416 xsltproc_1.1.35-1+deb12u1_amd64.deb Checksums-Sha256: 5e5ed6c89500e337febfbd0bbfdb11b4be78fe09731a49031c6caa438c402e4f 345272 libxslt1-dev_1.1.35-1+deb12u1_amd64.deb 5bc686ca46bbaf62f347cf18915ead8ce7daa1a3f6113a039c23530e8f2c77aa 344476 libxslt1.1-dbgsym_1.1.35-1+deb12u1_amd64.deb f0961dcda5004d5ecd57e8f6e2062bbbbd9ddac89abb1b4dd85ccc7304a022b3 230780 libxslt1.1_1.1.35-1+deb12u1_amd64.deb e598355cab66acb565531b615f1ae06779773ae7b038f3df1e98504d25acce44 7332 libxslt_1.1.35-1+deb12u1_amd64-buildd.buildinfo bcd88769f380198d0aea68092e53f31a8284f3d4c5c9aafae1592f37f04a77e6 29640 xsltproc-dbgsym_1.1.35-1+deb12u1_amd64.deb 05c843de1d2fbabd6185a3b857be12632889d74dc215531ee389e51a0ca894c9 114416 xsltproc_1.1.35-1+deb12u1_amd64.deb Files: 9dd7e3028da4773a40494235770bc928 345272 libdevel optional libxslt1-dev_1.1.35-1+deb12u1_amd64.deb 20572c6457fdd3885048896b28cf905e 344476 debug optional libxslt1.1-dbgsym_1.1.35-1+deb12u1_amd64.deb 93b8d9deab248639865a59867c66fc3c 230780 libs optional libxslt1.1_1.1.35-1+deb12u1_amd64.deb 0192a7ffa0a877a4de491cf663dec50f 7332 text optional libxslt_1.1.35-1+deb12u1_amd64-buildd.buildinfo f1434302671f616bb621e119f37545d9 29640 debug optional xsltproc-dbgsym_1.1.35-1+deb12u1_amd64.deb 527bb55f4265c4e3e5112f3d2f922d37 114416 text optional xsltproc_1.1.35-1+deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEgdRoRGwEM09wlaMzOni7ZmUpKEcFAmfViiYACgkQOni7ZmUp KEelExAAu625ef3x/LlrVllJzpa7eIGkl+eOzIbrhBMls4RdY325Xpuw/6aEYSln DTM0pvzMhHiJjfLfCOrHBh+wrSqUXAeXdYbkHXaMkMji5QQtHorjMg8XDrf2aWQK +OZyIAIwAH5UoGlh55+WQ/AntMZ4cmwJTBCvasgDXPUhnqDzzokT2VrmLQYrTBVJ Hh+LUX0cr2K5v+FjZX0TZPwrY7dTzFR+Jasiy01lndWcCxK8sG7uk5EmzJztnQHR CSODR0BZIbnsGAxOwL0ZuED7fB6mjjYS6beR4wOkGJvygHQ9YqQbQFYG8iuQEfiw qRAyfdR/AGUnJeTmWsegWPuXpeS94DqnbB59r+90BQduHvWqHFlezGhzQXLCuBQp QKbJ5uHN1dolcdS5HH7KamQ4cTXYnHfoaKkRL2SE3gM6Gl4h+CERrMm9DE6xHps2 dGDTYp2XE/NLRgqFHfZalHYDTjiLXAIiXNbMVxRfCScng4Aqn1fK21GPzAm5VZuv ghYPCP2o3RWF35LqAD54Mlic/m6QiU6/8fWMm5KzTB840mHxedXVNl/se6FdmB6N 7dEk2VDsYY2dqjrOom+0fvpp36GNV8E7YpZ2j2n8COKPcGotRN8jPoE6KdvS4uQI +4uvlikfiL+W1eQbwSNt5zG09TD4sAkslS6MoYcevwjVLEOUKFg= =LJaB -----END PGP SIGNATURE-----