-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 22 May 2026 14:56:30 +0200 Source: haveged Binary: haveged haveged-dbgsym haveged-udeb libhavege-dev libhavege2 libhavege2-dbgsym Architecture: amd64 Version: 1.9.14-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Salvatore Bonaccorso Description: haveged - Linux entropy source using the HAVEGE algorithm haveged-udeb - Linux entropy source using the HAVEGE algorithm -- udeb (udeb) libhavege-dev - entropy source using the HAVEGE algorithm - development files libhavege2 - entropy source using the HAVEGE algorithm - shared library Closes: 1137096 Changes: haveged (1.9.14-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix privilege escalation via command socket (CVE-2026-41054) (Closes: #1137096) * Check peer credentials before reading command (CVE-2026-41054) Checksums-Sha1: b3573a0510cf078900d9c0a941b15a70c304d7e0 27232 haveged-dbgsym_1.9.14-1+deb12u1_amd64.deb cb6c5d065783b5e66a5acf71fb297a531e9081c1 27724 haveged-udeb_1.9.14-1+deb12u1_amd64.udeb 17c61414398670ff9b4a2f3daa094bec3aa73e31 7469 haveged_1.9.14-1+deb12u1_amd64-buildd.buildinfo cc2ea5c567beda2044a3d031d2621212c5d1f81c 37224 haveged_1.9.14-1+deb12u1_amd64.deb 253dfc9b3224c2bbb8ebf11b26603268279c5faa 35072 libhavege-dev_1.9.14-1+deb12u1_amd64.deb bfe152b8dcb2a2ed136c460662f0f60029929e4c 77284 libhavege2-dbgsym_1.9.14-1+deb12u1_amd64.deb 0883a1823d98ecf6ad6d7c1a0298b09147291386 24896 libhavege2_1.9.14-1+deb12u1_amd64.deb Checksums-Sha256: 9bfd344d8e5a4cc5ebc3df57207c4fb7ed66e1155547d810761f3640755035df 27232 haveged-dbgsym_1.9.14-1+deb12u1_amd64.deb f590a3eae584ef37cf83398612cdbb261d907a1418e7c087cac2f5e425bf32e6 27724 haveged-udeb_1.9.14-1+deb12u1_amd64.udeb 2fe13c64438d84b1bda0e32bfc94d6078089963b0a747dce260ddb64bef2b559 7469 haveged_1.9.14-1+deb12u1_amd64-buildd.buildinfo bf82a6138cf028fa3375a6fd0343ded58fb4e8242910a50374fe764f2396c27b 37224 haveged_1.9.14-1+deb12u1_amd64.deb 2cfcad910d55dedb5299226e55ea18e978332a2a15a01ba220a8bbd0dd9d068b 35072 libhavege-dev_1.9.14-1+deb12u1_amd64.deb ea78430479e0e8030632fcf750b98e4cd8de21f492067f75a3d77c204c52112f 77284 libhavege2-dbgsym_1.9.14-1+deb12u1_amd64.deb 42d54e94483864d7da1bc19fb149481013d12063876a414fca5d6e0554048e7e 24896 libhavege2_1.9.14-1+deb12u1_amd64.deb Files: 41084cee969d8e64e8fc963ce0e61810 27232 debug optional haveged-dbgsym_1.9.14-1+deb12u1_amd64.deb 82008336868d82138377ea1849e7a55e 27724 debian-installer optional haveged-udeb_1.9.14-1+deb12u1_amd64.udeb dfb1c37b7b9bb2714a41ff887f781a91 7469 misc optional haveged_1.9.14-1+deb12u1_amd64-buildd.buildinfo 4b3340c899a910daca48a0a9ef00b04a 37224 misc optional haveged_1.9.14-1+deb12u1_amd64.deb a78391a23fe9a9f1d9d7e84fb7e298fe 35072 libdevel optional libhavege-dev_1.9.14-1+deb12u1_amd64.deb 90da0cf6801447d069835324341b24ab 77284 debug optional libhavege2-dbgsym_1.9.14-1+deb12u1_amd64.deb 6d8e807a0c345e259dc23c17750f0b8d 24896 libs optional libhavege2_1.9.14-1+deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEBDWXQb2umOtH4DRpYg9P9sm2dfEFAmoQZX8ACgkQYg9P9sm2 dfGHuQ//TcUKRE8BHC+Et8ILQSbXT9+2ZgUYaVBpWEOArwCbDb4/4iuQlpS/seEw UDPfADIieEbGre/uAXTkcHV9zlRej+XCgZHyHRoe2ya++PkQOI32ZxCp6srK8xcX XWMGodbeFLC0XLz3oo/B0RvIDYRnlHLSPKBnBxl2oHSBj+tzGruPQ5JQKsbHTVzd MF/8NplMVVNaTguOIngyjSWFEQKPg6h59jLRQ8eJ92XzYmuKcrUyfd4cNVaEzez1 ae39FqZBoThTx9MR0YnxfQ6buSqsrpsveD+qIgIDspz6Z+AGXSBzd58qYl72mrIG edprRFzo/yHaBg044gESw9dVV9zHgrkq3tjWMH4NgZF20PBUVBSPZHVQepiS+rX8 1RX8+FOGpcMkJswby2kBd4ZGcReYfIfCBiZ5WZmzzqDJUQjAOk6wc0pIwasY5N2a RmneyfZ1pMIYwsNkOWcvTMf3ShUOrb3uNU6OArLk5emN+qcQN8VlC2Rfk3PHMNkE c4MQpQv55TcntIe04uJhneRIMgZnWLiLs8cE9zXGmoutFzY2cIzh8iYvumtb//5B 7hdtG4AIHuh8a0V5tvLRAvCk7PDsVQetp3NEPPALRh8XyYD2Eyw2n4HUBZ+uI+mV mZRcMZsAHWiMpnZKac1mepfiskBKD8KE50vKaUQ1o6oXUgYyjyI= =arj2 -----END PGP SIGNATURE-----