-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 10 Feb 2025 21:06:21 +0100 Source: pam-pkcs11 Binary: libpam-pkcs11 libpam-pkcs11-dbgsym Architecture: mips64el Version: 0.6.12-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-osuosl-03) Changed-By: Salvatore Bonaccorso Description: libpam-pkcs11 - Fully featured PAM module for using PKCS#11 smart cards Closes: 1095402 Changes: pam-pkcs11 (0.6.12-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fixed possible authentication bypass: Don't return PAM_IGNORE (CVE-2025-24531) (Closes: #1095402) * fixed possible authentication bypass: Use signatures to verify authentication by default (CVE-2025-24032) * Update configuration files for the CVE-2025-24032 fix Checksums-Sha1: 08f93acf009f1b858baa78957ee0ecfb38f1f999 725144 libpam-pkcs11-dbgsym_0.6.12-1+deb12u1_mips64el.deb bd6d485c83ddb9bd7c05fed2ba6c2a4fcdc7f308 142696 libpam-pkcs11_0.6.12-1+deb12u1_mips64el.deb 47ca7daf9d6234fefc3f93df513f8e6e2e08b4d7 6807 pam-pkcs11_0.6.12-1+deb12u1_mips64el-buildd.buildinfo Checksums-Sha256: c53a24cea64c790553e89e3b7d3807ebe14bafc49e9894651d834bbf59864d02 725144 libpam-pkcs11-dbgsym_0.6.12-1+deb12u1_mips64el.deb fd8904017aeb79ceb52f9396bd7facf7ee65b2588d749f72213d726699dbd0b6 142696 libpam-pkcs11_0.6.12-1+deb12u1_mips64el.deb 1622a88d47729d9eadd57d33a05a5bc34645dbbce6ec15ead11a59780c7339bf 6807 pam-pkcs11_0.6.12-1+deb12u1_mips64el-buildd.buildinfo Files: 4e166aa0df3dff38857b7e3743bf444f 725144 debug optional libpam-pkcs11-dbgsym_0.6.12-1+deb12u1_mips64el.deb 8f1ff3a3907fc200ce4a9bdf71d622ea 142696 admin optional libpam-pkcs11_0.6.12-1+deb12u1_mips64el.deb f9f12dbade9b351cd5cd1ab4428b5606 6807 admin optional pam-pkcs11_0.6.12-1+deb12u1_mips64el-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEunmvxaaGKuI+hxxClmZGXOM83t8FAmeqZy0ACgkQlmZGXOM8 3t/I3hAArIC+Pk4H2cT5jVkriCL6TpHagfzkyQBhl8HBELIDkf8TBmNV0QDCd2y/ lfeaRJRTBPTZIeZe9Bb9KO1veSoTsyZALfJeOsF9Ju0TfN2sDvpmwsLL7eH8EtSQ BamhU7Kz4d3sKrMI7bk+6wTf9kYQ2O9jeG4/D7IXlwui1+y6ha8gKpA/V697a78e Xh76BloFz3Bq/CtzyhdXBZddU2vhl7Hd7r8Z4jNdCjtH171nz5zpmCsqJm+yXqIn LByf/1EjRN4/RuBqiba6+7q26JzIhN7OM3dXseBht32G6PiQKPG9XW0UpqtrGdVw oAmH0cl6nAlHPUfFw7En2EYELjNRrGEo4QLU4rmcGvFDY+7RTK3fEuYSiaEUSswZ 6KWd8K1kbtKyhb0Ei2cMMbf37IvcV+oOcUvgKGud1BMoGfy2Sn2tZshl1KpKoq6g oCfeKxulIkUaJQ/ISstshQKf+vby5lFjdIpubVqAVclJjcLqLethgcmn/avXbZc3 a8fb5cLksONZ5wiJvA2c78oFY69tsgLAR7d4+1gSVaDc8d3vbeUZURDnrjuhsmbV yPhUN4gjGy8jyfC0/AnByvjUZ6AUrwXjXrr6kolp+/1JZ+65hgtk8/0v5DS4vUE/ FtvrdNTAkDDwZd8ABD+58jIq0cO+ksG1iZQ5CnUvlLk/0BcrlAA= =mDgE -----END PGP SIGNATURE-----