-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 16 Jun 2024 17:42:49 +0000 Source: pymongo Architecture: source Version: 3.11.0-1+deb12u1 Distribution: bookworm Urgency: medium Maintainer: Debian QA Group Changed-By: Bastien Roucariès Changes: pymongo (3.11.0-1+deb12u1) bookworm; urgency=medium . * QA upload * Fix CVE-2024-5629: An out-of-bounds read in the 'bson' module allowed deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory Checksums-Sha1: 48c3c89e83c1683c682df0e07640c840452579dd 2482 pymongo_3.11.0-1+deb12u1.dsc 8117d0ccddfb8947c58e6d3d4b037c12b6c2297a 773027 pymongo_3.11.0.orig.tar.gz 7e07a2e48c2f882962f7710300f35355fdce80a6 7632 pymongo_3.11.0-1+deb12u1.debian.tar.xz 643dee0a8b0068eff1d54cf0cd9901d2c37db35e 10253 pymongo_3.11.0-1+deb12u1_amd64.buildinfo Checksums-Sha256: a1ac11eb719baac56a3ee0bd78510102befe1be7933098b2f2e183955ddbafe4 2482 pymongo_3.11.0-1+deb12u1.dsc 0492725a6cd25c3f30ad00caa741a50d906070b7e7ec030c516a1c75003118cb 773027 pymongo_3.11.0.orig.tar.gz 2158b6f209a4b2e2e2afec6b5134333d081f0fbfed0ab64176d61a271dff6c58 7632 pymongo_3.11.0-1+deb12u1.debian.tar.xz 67935e0dffe5b178e042919bc824df3b8a531b1af8195e525a25f407da0e0bf7 10253 pymongo_3.11.0-1+deb12u1_amd64.buildinfo Files: 4503df01748458f017d49462d2d6a005 2482 python optional pymongo_3.11.0-1+deb12u1.dsc 2a9377f24ee9cbd5f479d936567b0a63 773027 python optional pymongo_3.11.0.orig.tar.gz d3f6d08bdf81e3ce5d7114b81cf12eff 7632 python optional pymongo_3.11.0-1+deb12u1.debian.tar.xz 523ac925734a4119e9c9c42ea0a917a9 10253 python optional pymongo_3.11.0-1+deb12u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJFBAEBCgAvFiEEXQGHuUCiRbrXsPVqADoaLapBCF8FAmZwkQ4RHHJvdWNhQGRl Ymlhbi5vcmcACgkQADoaLapBCF8KGA//YhDlbZsbPuyNc34QeREePm4RUjSk0SBX zJSW/ETaXpZGg3+3KOsMfyxh91/zQ+G+Vz1aLgWYp+YHykMJfuNgDRtzENiKA9oJ 2DMi/DSaZzsKMRw+rnLmB4rEQYGgL9zOm3RIQLFoA3zmseFMlz49FMKJTEKNwObi 8VITfmHEXUGHZJe6oqPvvPF+MKBFZ+uLDfnWEEqCK6ql/JQ5YUO97B3a7DAlbliA yYb98hPhsFZqQO9myKkxFuUS82NZX/m8xSBpr8Oof9xP8F6ZAu8tC4dl4Fd0deQc Mmih4TKk55UDv3KV66XgvdHOIFpWbGZy5nVmcSwPNA+xhAw26HVYRAF8axwY6jYP dO1lVADP3fst6wvFOr3Mo+IcUn6WAeenSt7f/+9lYho/94e+xk45cUCO8xI+YiCP I9QX7k1Ymb9qF2+E/4Ixe7InpO9o4mEq5lW/31D/WGYB/AR6MzQYQ+PG62smpl1K +xxCoMuxQN2y/tdzR4s3ceTGP8fH71fN0Ajy12Qlm00kyuGf3puj6YBVV4HRw0Y6 xdBEyLmNZXYq6CJH4MhyxIfe+krtEjSp3cNcgZMc1bZlW3drwbrMs+GGMJoIsbnC WtCKa+14auplhprfv3kC8B0YlzMGFqBljtkYjQIKK6HDw/M9iU9Ru6FkW4pic2O6 W39ZnyyJ6Ds= =dgja -----END PGP SIGNATURE-----