-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 10 Jun 2026 16:29:23 +0200 Source: librabbitmq Binary: amqp-tools amqp-tools-dbgsym librabbitmq-dev librabbitmq4 librabbitmq4-dbgsym Architecture: arm64 Version: 0.15.0-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: arm64 Build Daemon (arm-ubc-05) Changed-By: Florian Ernst Description: amqp-tools - Command-line utilities for interacting with AMQP servers librabbitmq-dev - AMQP client library written in C - Dev Files librabbitmq4 - AMQP client library written in C Changes: librabbitmq (0.15.0-1+deb13u1) trixie-security; urgency=medium . * [b57bf8d] d/patches/CVE-2026-44235.patch: added from upstream. Fix out-of-bounds read via undersized frames in amqp_handle_input (GHSA-9mmv-r8g3-qp46, CVE-2026-44235) * [890d6c5] d/patches/CVE-2026-44236.patch: added from upstream. Fix client crash when server negotiates frame_max below the AMQP protocol minimum (GHSA-jh48-qjf5-fx5v, CVE-2026-44236) Checksums-Sha1: 46368f1c36dda7bd804bf48b1b08bdabb9dcb43f 68988 amqp-tools-dbgsym_0.15.0-1+deb13u1_arm64.deb 7be9d03cb335bbde36e74c50c64607401b8d4971 37380 amqp-tools_0.15.0-1+deb13u1_arm64.deb 524fe7bc760306f0a5bae5e670efc8b44d3120c2 77660 librabbitmq-dev_0.15.0-1+deb13u1_arm64.deb b39258a5e16c66b5edf14b563ae697e469a52ffd 150368 librabbitmq4-dbgsym_0.15.0-1+deb13u1_arm64.deb 1c4c427c619c4857bea0084acc75f793ed9f3385 41080 librabbitmq4_0.15.0-1+deb13u1_arm64.deb c4bf9094e1b3bc72925fd06e7dbc1bbec5cceb96 8269 librabbitmq_0.15.0-1+deb13u1_arm64-buildd.buildinfo Checksums-Sha256: e997fe094aa01fe435c728a4f0009396eba1201892931f48b07d539251a81491 68988 amqp-tools-dbgsym_0.15.0-1+deb13u1_arm64.deb 5acd0cbfdc8f721a27d6c85f3b14b7e49a297e4cc6a5f89b2f7344ca45946d84 37380 amqp-tools_0.15.0-1+deb13u1_arm64.deb 13906a0bf996976687923a07cb221c05b055ea02a41a2d21c74e40cc60fc7df3 77660 librabbitmq-dev_0.15.0-1+deb13u1_arm64.deb 9dc8b7b77164eb0accc639a2a82fb0e0baa4ad64a77914cfeddc87948ff62dd3 150368 librabbitmq4-dbgsym_0.15.0-1+deb13u1_arm64.deb 76174decede31e489d68831b1e3774bbdfb4975cb9a9b4eaaeb95b29fc687009 41080 librabbitmq4_0.15.0-1+deb13u1_arm64.deb eb90ba23607262953d820e238bf43037d336c3271233e1b6966bf0964f4ec71a 8269 librabbitmq_0.15.0-1+deb13u1_arm64-buildd.buildinfo Files: 1afdd8cae9e56b18f217a46f5ccaf69e 68988 debug optional amqp-tools-dbgsym_0.15.0-1+deb13u1_arm64.deb abb2a7355c9527d57207d0376287c319 37380 net optional amqp-tools_0.15.0-1+deb13u1_arm64.deb 11549c5700753150e32501484ea81228 77660 libdevel optional librabbitmq-dev_0.15.0-1+deb13u1_arm64.deb c7de2eddd76d781842a015fcdff25041 150368 debug optional librabbitmq4-dbgsym_0.15.0-1+deb13u1_arm64.deb f5cedf6dda8d79f975ec2ce63adc45d0 41080 libs optional librabbitmq4_0.15.0-1+deb13u1_arm64.deb b52a85e8ff888eb2b8e7e06c7f18d353 8269 libs optional librabbitmq_0.15.0-1+deb13u1_arm64-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE7rv+l3KtZdQea77lnwznazfjXToFAmoqygYACgkQnwznazfj XTo19xAA5O592tPHwohkjDOE8QJKqzO7UcCc7XdBzRolD1LT9yH/TdEjHPBBrP4Y dLQ/J2leeizoHKU2w3ELx2TTgggHuSMiwzNlrU/2ULyjaU7dCExIAO6tcn/9sLKh d6h9xqbdztuWiuziiTRFQs5OnolnVsewRBGS8jtFStKK7l+g1MTHBhWaaSeGh/6u 2UXSlSdI7RrHE0XzQGTg0FyTXETERxLAmCMioPO4Ee/yUHWBXhnhXKD68QMNv5fl UQDf0jVRFRDwoEAdPwYLQC/I1Bw9ZjrdClpaXV7LphMSA06dyuCP0W7TLkYonbhX wVGkru+jKgkeDKjy9U5M9OpbpvV0HknnMIX/eHpLFvjJtc/fUvbR+yeWtrx+U0wa SGl0/try0XyFJw5KoXZrXVFKxfl325cP2+EW+pdr6cdOcOamTE/BN76jyZuiiiXm BO2YK8DN2kztI0klIa3AobqIP0U1GUpWIBDKz3mJKuZgjsWjtIbsLXkNxocBgaRj APOOEIViKTggNY0KcUGWYPwri6jfJJydZHygBygfJmy+6wlRZp9vy7P0/jvZhlkj MxY5NQj+keFJnjmcWkrhCyURIi3A3mP0E1oNs0kqbcq6wtIDNAmubs0jM4+BvQHt QTbSOfM4mo531Lg6ViiZHU3Cv4nqoA9+d/npyGOCr3jK5dkOtbo= =Xap1 -----END PGP SIGNATURE-----