🚀 go-pugleaf

RetroBBS NetNews Server

Inspired by RockSolid Light RIP Retro Guy

Thread View: gmane.mail.exim.announce
2 messages
2 total messages Started by Heiko Schlitterm Thu, 05 Oct 2023 23:15
Exim security release 4.96.1
#237
Author: Heiko Schlitterm
Date: Thu, 05 Oct 2023 23:15
146 lines
6020 bytes
--===============3888502762535760674==
Content-Type: multipart/signed; micalg=pgp-sha512;
	protocol="application/pgp-signature"; boundary="NSeM51sGjnkMm1Ag"
Content-Disposition: inline


--NSeM51sGjnkMm1Ag
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Dear Users,

probably *you* didn't miss it (but we failed to send the announcement
here=C2=B9): we published a security release exim-4.96.1 with the fixes we
have so far. More fixes will follow, as an other security release will
do.

See this link for a summary: https://exim.org/static/doc/security/CVE-2023-=
zdi.txt

Distribution points:
--------------------
- git://git.exim.org
  branches:
  - spa-auth-fixes (based on the current master) [commit IDs: 7bb5bc2c6 051=
9dcfb5 e17b8b0f1 04107e98d]
  - exim-4.96+security (based on exim-4.96) [gpg signed]
  - exim-4.96.1+fixes (based on exim-4.96.1 with the fixes from exim-4.96+f=
ixes) [gpg signed]
  tags:
  - exim-4.96.1 [gpg signed]

- tarballs for exim-4.96.1: https://ftp.exim.org/pub/exim/exim4/ [gpg signe=
d]

GPG signatures are made by me (hs@schlittermann.de, or Jeremy Harris
jgh@wizmail.org).

For cross-verification the SHAX sums follow:
SHA256 (exim-4.96.1.tar.bz2) =3D 26bbcd4f45483c7138912b4bd31022aee8abf8ac7c=
dff55839d7e2a9e4c60692
SHA256 (exim-4.96.1.tar.gz) =3D 6d06845e07c699e7dabbe1ca1edf23fe8b17083dc9f=
e0736f0b4a90351ac708e
SHA256 (exim-4.96.1.tar.xz) =3D 93ac0755c317e1fdbbea8ccb70a868876bdf3148692=
891c72ad0fe816767033d
SHA256 (exim-html-4.96.1.tar.bz2) =3D 42084c0fe3cc430eccd598beb5dff3c774292=
6a4a6c92d44d6836480757e1b72
SHA256 (exim-html-4.96.1.tar.gz) =3D 9c2d7de709def8e44b200db74b59777e6fdf28=
11718ff3f3ba75f1e006812e6a
SHA256 (exim-html-4.96.1.tar.xz) =3D 745d73e6d17fddbd0c92e55ab134ba691363ee=
583604038bc2fd551c70acbc6c
SHA256 (exim-pdf-4.96.1.tar.bz2) =3D 89b532da12560d4c3dbcada1c96d07ca0b7ae2=
1af61c3798eada715acf081ae7
SHA256 (exim-pdf-4.96.1.tar.gz) =3D b4b1d6f32ea04e44370b5de38e961c2d16580b0=
89839bb1e1416e95be05bfd0e
SHA256 (exim-pdf-4.96.1.tar.xz) =3D 510c793e6b4122fa2312eaa697d90d8be4b5f84=
80977c3babdb35d5c1e8cfe79
SHA256 (exim-postscript-4.96.1.tar.bz2) =3D 7369e423b4f5b6557483da7cbd29001=
0fdffa4ade3afa0262a47416841d47bc9
SHA256 (exim-postscript-4.96.1.tar.gz) =3D 3ec107687f6799f8798edecb10cc4ce4=
5cc74aec8ed2356a87754b12a1c43782
SHA256 (exim-postscript-4.96.1.tar.xz) =3D e6332d2a26cd68223d8e73180b95f63f=
92dc781090dccb22af2c8f1991592824
SHA512 (exim-4.96.1.tar.bz2) =3D 2475437b48a266b2e453808a01320fe4df499bb9e3=
e7d41b6283f369cfa72602a02baa9a1bcdc630987a35da9db47e09fa682dca31748f07f8bde=
8403d636a22
SHA512 (exim-4.96.1.tar.gz) =3D 3c2d387686e0b1b4d4e06718eebb5a53b6944dd818a=
bf3f7a7d3cd1898557dac302708f5f9e2a09223cf7cb8d34b0234c1763eab9b2182fd1d9593=
012add02d9
SHA512 (exim-4.96.1.tar.xz) =3D ef1a0e57c59cdf4e915b3ac5dcdbc69f565b14dd92b=
0527f6796b2c46a9ec34f991f9790fb4171c99417f7e482cdd62d77e780cc71fab227c8bed8=
76103f7fdd
SHA512 (exim-html-4.96.1.tar.bz2) =3D 56fe39f66e238100e0ca62f19f08703176471=
cfccdb9c95368fd219f043c96da9da512418e10224514461302e1f25af0254bf810081c8b6e=
dfe676196ffbb743
SHA512 (exim-html-4.96.1.tar.gz) =3D 36fea45df417e87ee7d5676ca5347d7e28cb5d=
b70d583cf7471108a9b6fbedfdaa34793063f577dccdd9e62a8617380cb89f5f4d1891a4d05=
105d78655b7e588
SHA512 (exim-html-4.96.1.tar.xz) =3D 5519bf2056c8b4018a2e3a2d9afca0e0b19789=
90d3789be421d097bcae000d2d38205cd61e67bd83c27036376613c6ba69c993b6567adf3b5=
7fdd642e9db1cc8
SHA512 (exim-pdf-4.96.1.tar.bz2) =3D aefc9b6fe83c6cd74d87e7c4c448957f7bf76e=
c9fb94ff1620512906e84ddfae4f9445247b228d2231c6faf71e35ae0a2bf0cdcfb453bc622=
95694e22c597d09
SHA512 (exim-pdf-4.96.1.tar.gz) =3D 3f7ab2a405ebe5c2b027039dc23864bced07f75=
7f4bda2e283b938e9786aa18c70f167990c38e85bb5cc55b433bb470ed7acb04d5a9a732eab=
5dffe28d07e1ee
SHA512 (exim-pdf-4.96.1.tar.xz) =3D d39ee2f9a05326809a6e8454a108d717838dacf=
a42c2cade72f5937b1b44d70e70152fa75f4b4e9548cd4198d54f8a8c1323e14d7d1f9a0a23=
c99a53db1001b0
SHA512 (exim-postscript-4.96.1.tar.bz2) =3D 83b4f3d686d62e18da90b25d5ed2ab2=
ca5ff709ea16887f35a0e45dcf0ba139c02f5171008ae26879dd598a0f9d25bdc5851066375=
006d0a004b6a36d0ee957e
SHA512 (exim-postscript-4.96.1.tar.gz) =3D dceb5f9350dbba42c4fcffb03248f7d3=
951d3cb8bba759b8e3d4e3cd69651ea5db0b8a692b93e2be2958ad01865efbf2dd29b5ace72=
058ceb2aabc17451b6834
SHA512 (exim-postscript-4.96.1.tar.xz) =3D 788fc9c48955ef6eb497f64bdcc75812=
acebe144fcb5a8b773f5a03ced66be4842f8b3e9572e0dc5d625e0de4274cefa13ae708bb8e=
df9ee883795271d77db82


=C2=B9) Thanks to Lutz Pressler telling me.

    Best regards from Dresden/Germany
    Viele Gr=C3=BC=C3=9Fe aus Dresden
    Heiko Schlittermann
--
 SCHLITTERMANN.de ---------------------------- internet & unix support -
 Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} -
 gnupg encrypted messages are welcome --------------- key ID: F69376CE -

--NSeM51sGjnkMm1Ag
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAABCgAdFiEE0L/WueylaUpvFJ3Or0zGdqa2wUIFAmUfJ3gACgkQr0zGdqa2
wULvpwf9EHApgVzYUyp/pm2VsGkC9tHuMvtWow7VUqe+pD3Puy6++fiL69ExUFgo
MazqHZvSBYjfcaUt3cs9bItAkn2gS2DYjPTkdmDaQcH1bNmBMaE6jXmBd5DQRSRg
IOBjRZDAKVMk3qFJhO/+M1BT7NYoorcpOOB6DWz5TIb3hfRwdF9uNyYur2zqVJg5
BeloFfc5Gw7QldC8D09GgS9fcVbh7iJZLVXziW8geGFRUxCeT/qAqaPc1qfSnoKa
yOrqHPhhHycywgMI+nPsgM077fbye6+tHYZxfUSKm4S5n0KR9E+j9SPkt/JygVed
RhDEkX38u6MPrQ77675B+cPc0aG+2g==
=QBeS
-----END PGP SIGNATURE-----

--NSeM51sGjnkMm1Ag--

--===============3888502762535760674==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


-- 
## subscription configuration (requires account):
##   https://lists.exim.org/mailman3/postorius/lists/exim-announce.lists.exim.org/
## unsubscribe (doesn't require an account):
##   exim-announce-unsubscribe@lists.exim.org
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/

--===============3888502762535760674==--
Re: Exim security release 4.96.1
#238
Author: Heiko Schlitterm
Date: Fri, 06 Oct 2023 09:23
66 lines
2148 bytes
--===============0567124975352781956==
Content-Type: multipart/signed; micalg=pgp-sha512;
	protocol="application/pgp-signature"; boundary="OmEbr3uz1yszzxhl"
Content-Disposition: inline


--OmEbr3uz1yszzxhl
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Frank Elsner <frank.elsner@mailbox.org> (Fr 06 Okt 2023 09:13:30 CEST):
> On Thu, 5 Oct 2023 23:15:37 +0200 Heiko Schlittermann via Exim-announce w=
rote:
> > Dear Users,
> >=20
> > probably *you* didn't miss it (but we failed to send the announcement
> > here=C2=B9): we published a security release exim-4.96.1 with the fixes=
 we
> > have so far. More fixes will follow, as an other security release will
> > do.
>=20
> what about exim-4.97-RC1? Has this version the fixes included?

No, -RC1 was published before the fixes went public.

But the current master has them alredy. And -RC2 will be yet another tag
on the master branch. -RC2 isn't out yet, but will be soon, I suppose.

--=20
Heiko

--OmEbr3uz1yszzxhl
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAABCgAdFiEE0L/WueylaUpvFJ3Or0zGdqa2wUIFAmUfteoACgkQr0zGdqa2
wUIr4AgAtIiDJMjkTEDeM6mMBLC8OGJOFmc9xbi6aQILgaloysJcVjYC2/iSncAt
GmAb5bchMoXXblm2BLHn2940vUBbLyEvHLWT1HxvaTWNLIpnAipPLDMrNdGfmm8N
faqcGb94B8PSwXjjaE9Nn1U/Hdi0ySTL26r6qsuk3A2UUZRN9kshbH5vChzUFAif
fNpr7zTZ3Sm/QhqOAuOEDcu0xP8Ab5dkHEYtgcTqfSQfj7rV/HOQQTOQb1dJLnXC
ZEl3I0NDTqvs9tiprzZYH9TH8whpb0QN11e7AzwSmIRZoeOHjkmK95gj5Ce0qQTM
f+lBs1KHOU5nOky7Ez96T/ttDRy60A==
=FAjU
-----END PGP SIGNATURE-----

--OmEbr3uz1yszzxhl--

--===============0567124975352781956==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


-- 
## subscription configuration (requires account):
##   https://lists.exim.org/mailman3/postorius/lists/exim-announce.lists.exim.org/
## unsubscribe (doesn't require an account):
##   exim-announce-unsubscribe@lists.exim.org
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/

--===============0567124975352781956==--
Thread Navigation

This is a paginated view of messages in the thread with full content displayed inline.

Messages are displayed in chronological order, with the original post highlighted in green.

Use pagination controls to navigate through all messages in large threads.

Back to All Threads