-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 14 Jun 2026 12:12:16 +0200 Source: librabbitmq Binary: amqp-tools amqp-tools-dbgsym librabbitmq-dev librabbitmq4 librabbitmq4-dbgsym Architecture: amd64 Version: 0.11.0-1+deb12u2 Distribution: bookworm-security Urgency: medium Maintainer: amd64 Build Daemon (x86-grnet-01) Changed-By: Florian Ernst Description: amqp-tools - Command-line utilities for interacting with AMQP servers librabbitmq-dev - AMQP client library written in C - Dev Files librabbitmq4 - AMQP client library written in C Changes: librabbitmq (0.11.0-1+deb12u2) bookworm-security; urgency=medium . * [004421c] d/patches/CVE-2026-44235.patch: added from upstream. Fix out-of-bounds read via undersized frames in amqp_handle_input (GHSA-9mmv-r8g3-qp46, CVE-2026-44235) * [2dda700] d/patches/CVE-2026-44236.patch: added from upstream. Fix client crash when server negotiates frame_max below the AMQP protocol minimum (GHSA-jh48-qjf5-fx5v, CVE-2026-44236) Checksums-Sha1: 1b34941e89498c98b1404276c2ba21b85f9355a7 67304 amqp-tools-dbgsym_0.11.0-1+deb12u2_amd64.deb 637eb22bea887eb0ceb48fc77aa9d21688a08c2d 33440 amqp-tools_0.11.0-1+deb12u2_amd64.deb d6596de29d2571dacc7e1541286d257b2f5bcd09 76772 librabbitmq-dev_0.11.0-1+deb12u2_amd64.deb 19f361af2b415a21ce1dede824bcf6d8350d617a 145784 librabbitmq4-dbgsym_0.11.0-1+deb12u2_amd64.deb 5c8c95af850cd5d8381fb005e3afedb411b093f8 41508 librabbitmq4_0.11.0-1+deb12u2_amd64.deb ad20be575bd0ce940f5c8e3d7e043c2e6daaa18f 8259 librabbitmq_0.11.0-1+deb12u2_amd64-buildd.buildinfo Checksums-Sha256: 243781ee912bb26925133aca8eaf5b5d0b8f67baba5ba092edb7973ec04a2b44 67304 amqp-tools-dbgsym_0.11.0-1+deb12u2_amd64.deb f7c40a4d7040309544b42ee89e2e962c1757d60ffac0e0ebee08363080d6e871 33440 amqp-tools_0.11.0-1+deb12u2_amd64.deb 28191c580f1dbf2c1f8969f4b26608ed89e63ad4ef19b368f2fd15cad3b643b0 76772 librabbitmq-dev_0.11.0-1+deb12u2_amd64.deb e3bfd938a44d33633c3bf8f41e9969ed3a4d76a874d5eb5bc5ee4d2da4db292b 145784 librabbitmq4-dbgsym_0.11.0-1+deb12u2_amd64.deb 7f76923e6e9eac01c69243d46d9e7a311e26a8e4c4e116ae50c0ec430077547b 41508 librabbitmq4_0.11.0-1+deb12u2_amd64.deb 1c5cb53ab0f803c22d1c253fadcab086fcc888f309ac28e1b96d3508b15829fa 8259 librabbitmq_0.11.0-1+deb12u2_amd64-buildd.buildinfo Files: 880e498ca12dfb66451e7d257f3ea0e8 67304 debug optional amqp-tools-dbgsym_0.11.0-1+deb12u2_amd64.deb 698eb4fdcfb3df25cffc28d2c4ae46e7 33440 net optional amqp-tools_0.11.0-1+deb12u2_amd64.deb 5f48c74df5463c7d0ba2bb2fd904b287 76772 libdevel optional librabbitmq-dev_0.11.0-1+deb12u2_amd64.deb cfa97be82d7286af3d262043aad40a87 145784 debug optional librabbitmq4-dbgsym_0.11.0-1+deb12u2_amd64.deb e311108890a7f6e5fac416f04a148f38 41508 libs optional librabbitmq4_0.11.0-1+deb12u2_amd64.deb 0e90e2e96d3777f84ca7db064da46e53 8259 libs optional librabbitmq_0.11.0-1+deb12u2_amd64-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEPAUaMA0H0rOy6qBWf2INRiCdaWIFAmpEFsgACgkQf2INRiCd aWJsuA//UsoiCS3X2QyPbo7SCwEfPShxRbXC3SPsR+QeiekLMFJgaX/AdaQHszI9 +YHz9Kp2vKITTqLDwuy7RvqGYZvTSB13BRruv84NOEuiCeRHHxi74jhgYQgozX6H rjhW59Apob7TIpgroD7Cef0q8rACuCvN5qvaSdQVb+URCJFcL2i86FlsKqWgOZXP /05wCzMYVGNC+i//9XFX3ReIuqX2rNt8iN9Gprk1g9ZbzMGg3kQFKB/mIU7dinGI XjUrwL/s9PZJwn+ztGwPtHm8mKDLYhDFzDblQdkEPGQ9GlliQLE+kVmuv5m+nKMy zwDTF6MZVxF2dPHniU6C8SKrMPZvSWcRzRajj2Wb5mGiQ7NbJpAwgXpD+HL988fD 48EpTBrzmwdaA0Myoz0LI39nrp+Yb9dGqNg4q0ICtTCx2egHy8QD62h5+IgMRB0b sfTNDbT+Cvw+YzjN6Q06+HkYqVlx/r9umUulxs/mn5YRAYqHONfw5gPhnPcr67LD ECEx+H9Br9dO8KKJKgyJ90kuZcckF8QVM77b8CBudcru5yRg6M7wgdwo/aAFZ51f GtKQzqNFTT0AUt+jUCl018qmCtsplLILi1yCDVcBl/QNEhvvgQv68sm8hKgGKFAo 1L1NdQgeDcxdljZC5cD46IRV9+JgRx9zvENjC/j+GCr21c4iTn4= =Dh6o -----END PGP SIGNATURE-----