-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 08 Jul 2025 10:27:28 +0300 Source: erlang Binary: erlang erlang-doc erlang-examples erlang-jinterface erlang-mode erlang-nox erlang-src erlang-x11 Architecture: all Version: 1:27.3.4.1+dfsg-1+deb13u1 Distribution: trixie Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-grnet-03) Changed-By: Sergei Golovan Description: erlang - Concurrent, real-time, distributed functional language erlang-doc - Erlang/OTP HTML documentation erlang-examples - Erlang/OTP application examples erlang-jinterface - Java communication tool to Erlang erlang-mode - Erlang major editing mode for Emacs erlang-nox - Erlang/OTP applications that don't require X Window System erlang-src - Erlang/OTP applications sources erlang-x11 - Erlang/OTP applications that require X Window System Closes: 1115086 1115090 1115091 1115092 1115093 Changes: erlang (1:27.3.4.1+dfsg-1+deb13u1) trixie; urgency=medium . * Fix CVE-2025-48038: allocation of resources without limits or throttling vulnerability in the ssh_sftp module allows excessive allocation, resource leak exposure (closes: #1115093). * Fix CVE-2025-48039: allocation of resources without limits or throttling vulnerability in the ssh_sftp module allows excessive allocation, resource leak exposure (closes: #1115092). * Fix CVE-2025-48040: uncontrolled resource consumption vulnerability in the ssh_sftp module allows excessive allocation, flooding (closes: 1115091). * Fix CVE-2025-48041: allocation of resources without limits or throttling vulnerability in the ssh_sftp module allows excessive allocation, flooding (closes: #1115090). * Fix CVE-2016-1000107: inets does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable (closes: #1115086). Checksums-Sha1: 1f09426a5afe797b605fbee7eefcb23911edc889 16813656 erlang-doc_27.3.4.1+dfsg-1+deb13u1_all.deb f2696f2b710bb749ff1d952173b527802c6f1f11 963176 erlang-examples_27.3.4.1+dfsg-1+deb13u1_all.deb 133fc74bcebad7082c762e1676e2078c1f07b8ad 113996 erlang-jinterface_27.3.4.1+dfsg-1+deb13u1_all.deb f900fd915ea87805701e19756f71be1758da2b26 93744 erlang-mode_27.3.4.1+dfsg-1+deb13u1_all.deb 732d7ca4877bf8d4cd39cbce9e945f052189dd20 15360 erlang-nox_27.3.4.1+dfsg-1+deb13u1_all.deb fc2c257694f7aadc15e37e5242ea9b166e3bd09b 6113220 erlang-src_27.3.4.1+dfsg-1+deb13u1_all.deb 095ef3b34504291bf88410a74ed5fffdcff5a7d0 15320 erlang-x11_27.3.4.1+dfsg-1+deb13u1_all.deb 85a047eff1c88f633d53aa7a86bcc940a229c675 18396 erlang_27.3.4.1+dfsg-1+deb13u1_all-buildd.buildinfo cf166538f6cbef5e7637ab08f7d499b8f494b008 15712 erlang_27.3.4.1+dfsg-1+deb13u1_all.deb Checksums-Sha256: 250b072fc1cbcca8b427ee38f0a80372adc069de4f9cfd2fe79251493c300087 16813656 erlang-doc_27.3.4.1+dfsg-1+deb13u1_all.deb 4e1f2842fb3763c3429d306fbd6ea553d029ba5264221ec0ea25a8ef62ee96d9 963176 erlang-examples_27.3.4.1+dfsg-1+deb13u1_all.deb 3781e7162e846aeeb1309a13d2af45e4565715bb9c81b82fff8a84f977373814 113996 erlang-jinterface_27.3.4.1+dfsg-1+deb13u1_all.deb a53592c23827087efa9f90dc773b0b8c5eb80882e792ad8191a926d4622d58b4 93744 erlang-mode_27.3.4.1+dfsg-1+deb13u1_all.deb 8e351ceb6e68b6b1a572e7b361d29ebbfb7d3cf0a08b7ae676ddc5dbfd9253e8 15360 erlang-nox_27.3.4.1+dfsg-1+deb13u1_all.deb 987cda32fb7033e888aeb2b74ec5231a87c64c0d41dd666ae65bcfe1d2de62f8 6113220 erlang-src_27.3.4.1+dfsg-1+deb13u1_all.deb 464ed7ee06ad9c9d7309eac3e14ad4d2074981fb3d6456f3290a008123db7dc1 15320 erlang-x11_27.3.4.1+dfsg-1+deb13u1_all.deb 5aed224c17654fd1d77ab8cbcaacd4d8c76c519802604c427f77616ec5f637f9 18396 erlang_27.3.4.1+dfsg-1+deb13u1_all-buildd.buildinfo f0d04d61443a511d56459f9647172d1c1309a0f1f2b4eee42361394e4f360584 15712 erlang_27.3.4.1+dfsg-1+deb13u1_all.deb Files: cc9f1dfaabc9b7f91d7b1dc7a7d18b30 16813656 doc optional erlang-doc_27.3.4.1+dfsg-1+deb13u1_all.deb 040050d3a6de5e4a98bfd4d300b8d984 963176 interpreters optional erlang-examples_27.3.4.1+dfsg-1+deb13u1_all.deb 0de0235b4ae14f529ea14c200a2b8ae4 113996 interpreters optional erlang-jinterface_27.3.4.1+dfsg-1+deb13u1_all.deb 8916bfc1a0e749d0c4a4b9f2da94255f 93744 interpreters optional erlang-mode_27.3.4.1+dfsg-1+deb13u1_all.deb 622f38525a42cab0ebd839eeda352669 15360 interpreters optional erlang-nox_27.3.4.1+dfsg-1+deb13u1_all.deb a700c9770b414f5206725f07172813fb 6113220 interpreters optional erlang-src_27.3.4.1+dfsg-1+deb13u1_all.deb ac3121d7fad489e4e4e636e6089f9518 15320 interpreters optional erlang-x11_27.3.4.1+dfsg-1+deb13u1_all.deb f9a6727ee1d214d3718fd230df171176 18396 interpreters optional erlang_27.3.4.1+dfsg-1+deb13u1_all-buildd.buildinfo df81deb4b8022105925f98289a71dd48 15712 interpreters optional erlang_27.3.4.1+dfsg-1+deb13u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEHqtYLkdKRyCY94K8fUw6/tXbAmMFAmmnUrgACgkQfUw6/tXb AmNiUQ//dwKIKvGQ81snrIZzMPGEqR+0hq0CpTbKu2iPMnSQesLWv8jN1FViDhyf htmcQ9EgjXBMGFzbr/ukzhYNltupVZO82GJziGDq3lVsbYBs+3MiSsmosklP5WRz P4TI298MBNnWN1r2eQpixhENVAtQwQpRuZCKiVCL8weGyNfVPBOzJRgStdh7Mugg TST2sXnOsc5rnn2y4rzkDJFQNkWoEiOoAjDtByOIJzk+Kr+M1vozJuiDE8ZxaJ8r v3RbYWW5QXbkuJVSmuToEiwJ+GeZaZWKxq8YptSqbxll4M+eWEUb3qte/RZx1yNg ygwxPyj+wu946IHA8kswxuEkwLEIMnWRqN3T6zPHyqfyzRPr54B1lYSURSDxH08S UedpqOmmbqqMSQGKzu96DT8+1PNujce1QoxJ/T4TYlhxL7wo3jS3YtG4UQ3R1Fdo FwY34XF66nrg85vdBuib7HUezNe4ykUrsFHmOoNfwIf11WrRS/NJvPfa1IFV2Yzp 4Sh8m5WRONdLSiGcyGmT0kfPPPuHbbPgRvlCWS92mVjwUm6hmy3V2aQDIzYLtrsd cI8feovBu13FdM7COItJboyv80OyjnO8/dlbc6+nQ3Pugtdv+Wnxac6S/A5IkR/k 4PNiogW264XX+N5EF10R7R6x4SqAtPFJzZfwYspT2Lb27mGHLzA= =eKGU -----END PGP SIGNATURE-----