-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 16 Jun 2024 10:40:07 +0000 Source: zookeeper Binary: libzookeeper-mt-dev libzookeeper-mt2 libzookeeper-mt2-dbgsym libzookeeper-st-dev libzookeeper-st2 libzookeeper-st2-dbgsym python3-zookeeper python3-zookeeper-dbgsym zookeeper-bin zookeeper-bin-dbgsym Architecture: ppc64el Version: 3.8.0-11+deb12u2 Distribution: bookworm Urgency: medium Maintainer: ppc64el Build Daemon (ppc64el-conova-01) Changed-By: Bastien Roucariès Description: libzookeeper-mt-dev - Development files for multi threaded zookeeper C bindings libzookeeper-mt2 - Multi threaded C bindings for zookeeper libzookeeper-st-dev - Development files for single threaded zookeeper C bindings libzookeeper-st2 - Single threaded C bindings for zookeeper python3-zookeeper - Python bindings for zookeeper zookeeper-bin - Command line utilities for zookeeper Closes: 1066947 Changes: zookeeper (3.8.0-11+deb12u2) bookworm; urgency=medium . * Team upload * Bug fix: CVE-2024-23944 (Closes: #1066947): An information disclosure in persistent watchers handling was found in Apache ZooKeeper due to missing ACL check. It allows an attacker to monitor child znodes by attaching a persistent watcher (addWatch command) to a parent which the attacker has already access to. ZooKeeper server doesn't do ACL check when the persistent watcher is triggered and as a consequence, the full path of znodes that a watch event gets triggered upon is exposed to the owner of the watcher. It's important to note that only the path is exposed by this vulnerability, not the data of znode, but since znode path can contain sensitive information like user name or login ID, this issue is potentially critical. * Add salsa CI Checksums-Sha1: 47bd2b6f4ab4a7aa54c46f103127cedf340ea4a6 84624 libzookeeper-mt-dev_3.8.0-11+deb12u2_ppc64el.deb db7525d617c3fd1bc415f0b69f715ded17e75b5a 167724 libzookeeper-mt2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 297f1ec750a96fae0c171d57daafa3be9b5a9cee 55108 libzookeeper-mt2_3.8.0-11+deb12u2_ppc64el.deb 044a33aa572161fb28140b8d764164ce29a3bdb0 79228 libzookeeper-st-dev_3.8.0-11+deb12u2_ppc64el.deb c229645691e287861434c98b954b09af3c7c902a 152308 libzookeeper-st2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb a6adb42123c91c5d992272aae0a197c9a2d63d00 50264 libzookeeper-st2_3.8.0-11+deb12u2_ppc64el.deb 5ccd177fff6c770e096eb3f08c9b2f0c624eebbf 38780 python3-zookeeper-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 93416d303385a61cb92e294d11361b8cdbeed2fc 24932 python3-zookeeper_3.8.0-11+deb12u2_ppc64el.deb c1fb6df550136ed825311a9e83514444dab0bb56 35052 zookeeper-bin-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 651da6b629044b791aa849008874ada6c6ab5427 22360 zookeeper-bin_3.8.0-11+deb12u2_ppc64el.deb c120c3f6850e6a0c94eb427ccd976e1686f97c97 23335 zookeeper_3.8.0-11+deb12u2_ppc64el-buildd.buildinfo Checksums-Sha256: dc6f212dc21555bcdc7e87c248ee5854cfc11d24f04e9190f0403eb8cd56d238 84624 libzookeeper-mt-dev_3.8.0-11+deb12u2_ppc64el.deb 42e77f58a17c07c0a57957be492028ce7acbd3a4b7c39471d6d3019b6f46e65b 167724 libzookeeper-mt2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb e3105b657466ec35054a6b47d7b06cd4585f94b07878a22ed7367a8567f3b32d 55108 libzookeeper-mt2_3.8.0-11+deb12u2_ppc64el.deb 67882996feb7fbcb2df8c14a228c013b795ee44e09ec64e2865862bbc0688323 79228 libzookeeper-st-dev_3.8.0-11+deb12u2_ppc64el.deb 7cfaf7c4ce813912b74e3e21b1f14973abfaad4a532d65cbcf111b56791f2d5f 152308 libzookeeper-st2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 46b196072a43944b7c05fbec5a93af741c0c5d2ec434e61037a037783717acea 50264 libzookeeper-st2_3.8.0-11+deb12u2_ppc64el.deb 76f17392bb60028c7f1f0d891d0fa33b7a614bd26255050060f6ff8b9549f8be 38780 python3-zookeeper-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 2636bfd85e2babe58d00fc7f8f2eb2b7cd6be56c29ec6087b843725f2e0c7f4c 24932 python3-zookeeper_3.8.0-11+deb12u2_ppc64el.deb f8309de7fdb6e8ec584cd81fba2c2fe72652bb515d0e9471c9868c74750368e5 35052 zookeeper-bin-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 323e95106d45992b36614f79391ed94c6b94daf7a8b04e41dd50591d0f9ac8f6 22360 zookeeper-bin_3.8.0-11+deb12u2_ppc64el.deb 67dd42a97cc8a16558658692427bd453a8e14f2dc7469b9ca52f479c5babef1a 23335 zookeeper_3.8.0-11+deb12u2_ppc64el-buildd.buildinfo Files: d19bb29e41ce176647410bc5ac150855 84624 libdevel optional libzookeeper-mt-dev_3.8.0-11+deb12u2_ppc64el.deb a04282535d4d88f478955792fbe13b08 167724 debug optional libzookeeper-mt2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb d8a4f2af87542955647e0a429e00c008 55108 libs optional libzookeeper-mt2_3.8.0-11+deb12u2_ppc64el.deb f367acf79c1f0d6f46d8eb7bef04475f 79228 libdevel optional libzookeeper-st-dev_3.8.0-11+deb12u2_ppc64el.deb c779349e71968df83938fd8cb31e29f2 152308 debug optional libzookeeper-st2-dbgsym_3.8.0-11+deb12u2_ppc64el.deb ab526c6919a1a3f00ecba94f7a3b8624 50264 libs optional libzookeeper-st2_3.8.0-11+deb12u2_ppc64el.deb 7dca4bb3eea71b7e5c7e5b016f5815ab 38780 debug optional python3-zookeeper-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 2fd32b49c729056a93842f69b2572146 24932 python optional python3-zookeeper_3.8.0-11+deb12u2_ppc64el.deb 9df556ad1c97f2519d00e16f31ec7069 35052 debug optional zookeeper-bin-dbgsym_3.8.0-11+deb12u2_ppc64el.deb 6abbc9a4a44e73df50c2000fe96e2ad5 22360 misc optional zookeeper-bin_3.8.0-11+deb12u2_ppc64el.deb 4d4a820be8c9cf39d5e99f3b8a9d21f1 23335 java optional zookeeper_3.8.0-11+deb12u2_ppc64el-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvNkWZvjZkiWgJGRETMSrGPLkYxUFAmdxjYAACgkQTMSrGPLk YxXJJw//YBWz7DDuZy6BlFiPjMzOeAvTAmpnMFGyPmdsngfyrnUJDdKxpcagMoSF fe5Bo+ILaKHm1mDIwn6tXfy48CcwMzDZTWlLLDIs8yPg8/rmqpfeoeINbqFDyJNB L1l9SdfTbUO/VsmjPVNLeue3g5JlSxyyw7KyQ3UvtrzvAJeZu2OnlAedOGVTdXEi jh6Cf9FpBE9SZ7FAd1CVY9uvFwh4MQ9CElXtJamSSFb/IunMlm8Lpk0ZipDyuvnS jouj2eAYL9mrOvnGs3fv8KexvunwpRAC+gM+Z6/9hrCnnpHHz+kCnrMqKYIiLGca hRD3kX7DYOWjKmY/mMGNDE81yJ/fWg/Q/ZCeAPlhFPBcUBZ2NSdDR+cHixo7YXCE R/3jXz5y4asI1RgExBKf+hdTEvWFnxHxBPP5nFwrIYOjfF35F5IJ6zIjO027k0ve GudMuXh61aWt1vNgpG5nT+vOsktR3ewrow86RN/BHrc8A6A9P98MeHdSuo9ngY39 eialMTEQv2PZaweb/9MklwANz2NhR1BVc3O3VEDKnHsyQQx7m7AS5HvpHr19TM5W rMc6u35eWfGDXnndWRsLKuFv04gW1uzPIF0f2GdO93K1FKZmwvcyYFh+3wWUgZw3 ib/ruOuzT+gDN4pazuoIKQ99ZGQmD41rHlb7RiByLHDbEdB5aD4= =2KVb -----END PGP SIGNATURE-----