-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 10 Jun 2026 16:29:23 +0200 Source: librabbitmq Binary: amqp-tools amqp-tools-dbgsym librabbitmq-dev librabbitmq4 librabbitmq4-dbgsym Architecture: armhf Version: 0.15.0-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: armhf Build Daemon (arm-conova-01) Changed-By: Florian Ernst Description: amqp-tools - Command-line utilities for interacting with AMQP servers librabbitmq-dev - AMQP client library written in C - Dev Files librabbitmq4 - AMQP client library written in C Changes: librabbitmq (0.15.0-1+deb13u1) trixie-security; urgency=medium . * [b57bf8d] d/patches/CVE-2026-44235.patch: added from upstream. Fix out-of-bounds read via undersized frames in amqp_handle_input (GHSA-9mmv-r8g3-qp46, CVE-2026-44235) * [890d6c5] d/patches/CVE-2026-44236.patch: added from upstream. Fix client crash when server negotiates frame_max below the AMQP protocol minimum (GHSA-jh48-qjf5-fx5v, CVE-2026-44236) Checksums-Sha1: a64e30e947200bb44eea3317d8dcd96aa5d5fd7f 62096 amqp-tools-dbgsym_0.15.0-1+deb13u1_armhf.deb f3effba2b06bc161aeb89c4c615c0d9b713c94a4 36012 amqp-tools_0.15.0-1+deb13u1_armhf.deb 6ee10d512edfd2e2ae8a3dcad093ddb1dd32eb03 73412 librabbitmq-dev_0.15.0-1+deb13u1_armhf.deb 1b0aed11aa1168fb2f649ce10b46f51354a40da3 145260 librabbitmq4-dbgsym_0.15.0-1+deb13u1_armhf.deb a5a748652195c8057ec9a7d7841f6f4cfd3ee862 37136 librabbitmq4_0.15.0-1+deb13u1_armhf.deb 888d9ed84fa15991ae8eeb8847432b3d89e2d8a2 8151 librabbitmq_0.15.0-1+deb13u1_armhf-buildd.buildinfo Checksums-Sha256: 0d84bc88e87e2bf0f8170382c032090a3c6c85ffa805ec13fd550b6766c64cd4 62096 amqp-tools-dbgsym_0.15.0-1+deb13u1_armhf.deb b842cbcf4748bff3425eaafee2eddea7063ccdeb50d3235f2a0ff923e4118228 36012 amqp-tools_0.15.0-1+deb13u1_armhf.deb 9be7e76fbca55b1295d8574ed83e596d8c297d917ee8eefc6d0472948b68e2f3 73412 librabbitmq-dev_0.15.0-1+deb13u1_armhf.deb ebd895d419f02fa21b207e29fec4ba2215f029df093266cb276e812e76954a6a 145260 librabbitmq4-dbgsym_0.15.0-1+deb13u1_armhf.deb 4ea5fa199c30e3a31406a8d56a7ce5121afaaa8dbb85ba7ab614c741c68c76dd 37136 librabbitmq4_0.15.0-1+deb13u1_armhf.deb 0f99d1f48d7b53ba33982bfed20c4d25e8b8f121579eabcdaf339aaacb80c9df 8151 librabbitmq_0.15.0-1+deb13u1_armhf-buildd.buildinfo Files: ed796c65929ae80640d7aca2cb699c7e 62096 debug optional amqp-tools-dbgsym_0.15.0-1+deb13u1_armhf.deb 9f154c56a4a9645b93f5a8f88fb959fe 36012 net optional amqp-tools_0.15.0-1+deb13u1_armhf.deb d85a95d0d8f99050efb74ee787712646 73412 libdevel optional librabbitmq-dev_0.15.0-1+deb13u1_armhf.deb c9c7cd85eebbd2507e5ea73f7149e927 145260 debug optional librabbitmq4-dbgsym_0.15.0-1+deb13u1_armhf.deb 17211002ab5a95ee40dd7398afc4bde9 37136 libs optional librabbitmq4_0.15.0-1+deb13u1_armhf.deb fdbe20bd9b990349388151ff1d410dfd 8151 libs optional librabbitmq_0.15.0-1+deb13u1_armhf-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEO4qAQUSIo2p/kVRf8U6eOZMpj68FAmoqyf8ACgkQ8U6eOZMp j6+eOw//eHeHPljhnK6GtcMDX4mb77CVZ6fg/uMZDH9zHQUYIIsytlMIspgKPvyh NDQTO/v9Oj2VD1wCvF5J54PncRIi4jfq94zjHQ1qRB4QUGYza/M7zK1O/3jmiCFd gj5tr9ZfROQ7aNb+ZqkTVbHKunLiN70R1d8KvKNeaVdaaguX11OF2y94pFczxQ7l l9akjkZnmeTTI0n8EM7rxclAYk+OkFfHneQhjQBQj5hiXGSjts2czH+XvVR61G+d 4ppM5yymPEc/8XkhgOgI9noxBSnr9Yc10iLggjZQprcAYH2WNBc5MmnK18UrW2F9 O02mMSuNUn8TWcDZKNdZJ1QvwVGXNJQJeqDcZeinESIfa5pYRyQ9Lasolyrn20SF IOnAQyQS3FPyYsOJLsVPzbS8j8gpYnB8J8icPxkugOVgM02V/mlI/yePWk3VXhQ7 kPgwxskJTNAMXgm7AEHdQKYHnkkzyPbxj3ah5bGsCudEdwUb0cAF33bdwCkQzSJc DR2h0RM4pO/RD568orPxodErU79J4Ku40pVj9x+KjK9xshYF7+tfrStwMYsAx+g7 +9rJfilgM2H/VpdRmgnIZ3AVTkqEMBWbFj6QzWOaK18P+xJ9/eZJaPSlIImVc4h4 O//j4m9BPeHLFoDOT75OA4xYCbietXGjikaqsPGbu26V3LC06+0= =F1mg -----END PGP SIGNATURE-----