-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 10 Jun 2026 16:29:23 +0200 Source: librabbitmq Binary: amqp-tools amqp-tools-dbgsym librabbitmq-dev librabbitmq4 librabbitmq4-dbgsym Architecture: amd64 Version: 0.15.0-1+deb13u1 Distribution: trixie-security Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Florian Ernst Description: amqp-tools - Command-line utilities for interacting with AMQP servers librabbitmq-dev - AMQP client library written in C - Dev Files librabbitmq4 - AMQP client library written in C Changes: librabbitmq (0.15.0-1+deb13u1) trixie-security; urgency=medium . * [b57bf8d] d/patches/CVE-2026-44235.patch: added from upstream. Fix out-of-bounds read via undersized frames in amqp_handle_input (GHSA-9mmv-r8g3-qp46, CVE-2026-44235) * [890d6c5] d/patches/CVE-2026-44236.patch: added from upstream. Fix client crash when server negotiates frame_max below the AMQP protocol minimum (GHSA-jh48-qjf5-fx5v, CVE-2026-44236) Checksums-Sha1: c586992225f8c58abeed7c27c63509b5103233fd 68604 amqp-tools-dbgsym_0.15.0-1+deb13u1_amd64.deb f075626ec40249bd1f1c8318490ca699a2d6bcd1 37996 amqp-tools_0.15.0-1+deb13u1_amd64.deb 33b1e09c19f089f6fc04d3a422ef8d251a40004c 79124 librabbitmq-dev_0.15.0-1+deb13u1_amd64.deb b582db5304d9e1d18aeec0f0e38d0b9d7888bf32 144192 librabbitmq4-dbgsym_0.15.0-1+deb13u1_amd64.deb 4df6868de6392af298ff827fb644f34e904a7eb8 42092 librabbitmq4_0.15.0-1+deb13u1_amd64.deb deaab6616ccdcd1662e8b46ab96ef1abcbb450f6 8285 librabbitmq_0.15.0-1+deb13u1_amd64-buildd.buildinfo Checksums-Sha256: 7dbf71a1e1e458335b3646edd5473ba449b0e8832361a473f8d7dbc024df04e5 68604 amqp-tools-dbgsym_0.15.0-1+deb13u1_amd64.deb 69b11fe0ea71419d71da975456eab37753ef035a5dc9cf8197a5b020ca0d7a91 37996 amqp-tools_0.15.0-1+deb13u1_amd64.deb fde4e6b6b9f7f11af045d027f8c14c867aee531cf30d45545c009f38f11e13d3 79124 librabbitmq-dev_0.15.0-1+deb13u1_amd64.deb 233d46852547f8cd72033efa0cc8264b8880ead7674a3f6caf8534afa700e309 144192 librabbitmq4-dbgsym_0.15.0-1+deb13u1_amd64.deb 60b4dafbd86eb9b31f088212305abf9bb70e1ede9abf633c759fbd440ebeefba 42092 librabbitmq4_0.15.0-1+deb13u1_amd64.deb ea9695dbf3ab0640c4970d495760c59dacb24df023a54706d91d471ff53c230a 8285 librabbitmq_0.15.0-1+deb13u1_amd64-buildd.buildinfo Files: ca688c247eb0073464e66695f95c95ba 68604 debug optional amqp-tools-dbgsym_0.15.0-1+deb13u1_amd64.deb 69b9d6d3fb178c5db8a2fa54f4e36ca0 37996 net optional amqp-tools_0.15.0-1+deb13u1_amd64.deb 041380e7cfb056bbff672185c7bc0805 79124 libdevel optional librabbitmq-dev_0.15.0-1+deb13u1_amd64.deb 0182609cb63ae5ec75e6759d80c77c57 144192 debug optional librabbitmq4-dbgsym_0.15.0-1+deb13u1_amd64.deb ea8d173a82e0720bf42df7fe3511ced3 42092 libs optional librabbitmq4_0.15.0-1+deb13u1_amd64.deb 9e9f71dcecd9eabe4e96ec562e50261d 8285 libs optional librabbitmq_0.15.0-1+deb13u1_amd64-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEb5EwsJvHBEjqIJYIbheoBegwXLIFAmoqylAACgkQbheoBegw XLKjxw//SGs76qEsFOw2VP8gNkZYhwfw5EXA+2IqwrARvz/XiPwH4+eEGQc0CNYB YJsBT39vU43UlzBAMa8Jr4hBGQsfDeRX/BQQr3L2nHNvv/V9q7afHmD70bMkgUJC iRC4zGnT+M9YwWcn2K7Pgjf+Nx83rfmEF+phbDkP5LnwyLeFSGSBBWb5p6ntogyy GTi30S7rR/WL83bRCBB4xzLlV3mjdSk5Xtu+pp8iLu1JISkKrZbSJp50M40CV3KK FDf/Jh+yIpATrOlGxnjrMbDdbtPszgZvhzTYRc7AbSG8npKvsKGStD3q5+9a9DsO XcSd7USR704/ELsSVp1b0CRvJh+kZulC7+zHXTOHDTHeAGaWczgdbLcrvewX3gGG i/JEOAbKE4u6tVNNN34OeU84KGBHgb1DkNJbJwckJq7ooylUBZxz5DyUw/jRaug4 neHenJXuYwKXfw76ElvcixxdO7UTQ1/1nq7jMEfvx7RpHXx3CLWFtw2pW4zwhYpH UfzGB1WRmJZ+6FoKPfeALCpniIAKBoFx/H6+zL1W5Ei3aZfGWl4S6BW4QsuP66Sl iY9pAtlrOHCcCHboZO9nGc+tXt0DoAiEVx7teClX4lohDfz86fIuRbgY7LifjX/3 MdSQNkOxEhDCxva36XbYCOilQFdFyIT3numC3HgMgTsK8Cig/no= =ZHOW -----END PGP SIGNATURE-----