-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Nov 2025 10:45:05 +0100 Source: cups-filters Binary: cups-browsed cups-browsed-dbgsym cups-filters cups-filters-core-drivers cups-filters-core-drivers-dbgsym cups-filters-dbgsym libcupsfilters-dev libcupsfilters1 libcupsfilters1-dbgsym libfontembed-dev libfontembed1 libfontembed1-dbgsym Architecture: i386 Version: 1.28.17-3+deb12u2 Distribution: bookworm Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Thorsten Alteholz Description: cups-browsed - OpenPrinting CUPS Filters - cups-browsed cups-filters - OpenPrinting CUPS Filters - Main Package cups-filters-core-drivers - OpenPrinting CUPS Filters - Driverless printing libcupsfilters-dev - OpenPrinting CUPS Filters - Development files for the library libcupsfilters1 - OpenPrinting CUPS Filters - Shared library libfontembed-dev - OpenPrinting CUPS Filters - Development files for font embed libr libfontembed1 - OpenPrinting CUPS Filters - Font Embed Shared library Closes: 1120698 1120704 Changes: cups-filters (1.28.17-3+deb12u2) bookworm; urgency=high . * CVE-2025-64503 fix an out of bounds write vulnerability when processing crafted PDF files containing a large 'Mediabox' value. (Closes: #1120698) . * CVE-2025-57812 fix an out of bounds read/write vulnerability in the processing of TIFF image files. (Closes: #1120704) . * CVE-2025-64524 fix infinite loop with crafted input raster file, that resuls into a heap buffer overflow Checksums-Sha1: c002921fb6fc1ca622cbb02c333795b9f14a203a 175620 cups-browsed-dbgsym_1.28.17-3+deb12u2_i386.deb 613dfa234eef2573b2f42aafd6e01c2573de51ad 144504 cups-browsed_1.28.17-3+deb12u2_i386.deb dd96b3110a4f37723a79fbd4c0e723c3398ba1f1 2010508 cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_i386.deb 4b44ee8077d8ea370d74a40ce536ee1654197bb3 209296 cups-filters-core-drivers_1.28.17-3+deb12u2_i386.deb ff54de2c81d0f32a55b944a4e180f12af05d1883 748852 cups-filters-dbgsym_1.28.17-3+deb12u2_i386.deb 28ce592ab73c5ff9225a679badb2f81f601d4a84 14521 cups-filters_1.28.17-3+deb12u2_i386-buildd.buildinfo 2e8b8e9149da5aafa60c79eed30d7d9cf2edb5b6 573868 cups-filters_1.28.17-3+deb12u2_i386.deb 8d7fabdde85a85bbd0663392496a505b7ac669c9 147516 libcupsfilters-dev_1.28.17-3+deb12u2_i386.deb 016f8f8a460004255f6c13411198cee5e8fb9e96 194476 libcupsfilters1-dbgsym_1.28.17-3+deb12u2_i386.deb a03a1a529d7574914d19a2e49d1dff80e767558b 129788 libcupsfilters1_1.28.17-3+deb12u2_i386.deb fdf33fda189664a97310dc0c23718697655005e0 59300 libfontembed-dev_1.28.17-3+deb12u2_i386.deb b3e84e3fb227e7c2a3c62d1c82f68e4b237084dc 48536 libfontembed1-dbgsym_1.28.17-3+deb12u2_i386.deb 6632cdafb043fb0ce0ca36524646216c743a37a8 54260 libfontembed1_1.28.17-3+deb12u2_i386.deb Checksums-Sha256: 14c1ae4d45739d6d9105a3ad566d79720994001050149611a53e5e2a2336d076 175620 cups-browsed-dbgsym_1.28.17-3+deb12u2_i386.deb 637dfb14e83320a4f0252002c9a77472ced438d9cf83e9cbc5312d2e550b1e61 144504 cups-browsed_1.28.17-3+deb12u2_i386.deb 375a9de9ff228ab0e85f4070076073a68aa7e13153f56235f77af726bdda40b0 2010508 cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_i386.deb cfc28d694641b8867f148e63209a9a29b40017e9915d23e933a218f692a41c13 209296 cups-filters-core-drivers_1.28.17-3+deb12u2_i386.deb e31a426f55ecc58acb7e22a4b4016453b75712ad5b7291b2a318286c842e30ed 748852 cups-filters-dbgsym_1.28.17-3+deb12u2_i386.deb 61296dfcf5b2c66291b0ef11bc80b8f08be6c00f4cfc2aae90d0542b45e0ff70 14521 cups-filters_1.28.17-3+deb12u2_i386-buildd.buildinfo ce5a18d2c566882b41ac168e34704e21ad7a732e688f6530b79c6d781cf9982b 573868 cups-filters_1.28.17-3+deb12u2_i386.deb b5c595d7c194370bfc0fc7e51a5fac9b454efdd6543b4017c202d57ab5017d45 147516 libcupsfilters-dev_1.28.17-3+deb12u2_i386.deb 72874ab8c4f77ccf317cdeb4f7d26f6a3198745af807ea94c8ba1de75ac6308a 194476 libcupsfilters1-dbgsym_1.28.17-3+deb12u2_i386.deb 97a772fb642af21c49132d40b9c242e432111b626af75cfee97af95c3339e653 129788 libcupsfilters1_1.28.17-3+deb12u2_i386.deb 98b1679c7603cebb66df9c600dd27fa94161543b03a748a0f391c0bd874678cd 59300 libfontembed-dev_1.28.17-3+deb12u2_i386.deb 1b93936a9930d973ac974bf30db266fab11983f7a1986e9f3fb688fd7a22e263 48536 libfontembed1-dbgsym_1.28.17-3+deb12u2_i386.deb 1bb0288dd61dd49e9f627262aea7c3491f198fb299d76ca5f6a41578ececb9e5 54260 libfontembed1_1.28.17-3+deb12u2_i386.deb Files: f64edd7f0758e59b1a2a9da3c92560b5 175620 debug optional cups-browsed-dbgsym_1.28.17-3+deb12u2_i386.deb 73e72a3030659354fc007cb1b273979e 144504 net optional cups-browsed_1.28.17-3+deb12u2_i386.deb 43846838e1df806d5dd2111857188cf5 2010508 debug optional cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_i386.deb a2872c1c8737b113c83b1ce0d2bb5817 209296 net optional cups-filters-core-drivers_1.28.17-3+deb12u2_i386.deb 713264cdc2b5d5af3449ed5795b71015 748852 debug optional cups-filters-dbgsym_1.28.17-3+deb12u2_i386.deb bbf114882bd3870dea6d9cad970ac499 14521 net optional cups-filters_1.28.17-3+deb12u2_i386-buildd.buildinfo 380d6cb530b5bf73057eae8b4fac05ca 573868 net optional cups-filters_1.28.17-3+deb12u2_i386.deb 0a76f8c601fe470d7de41881620989f8 147516 libdevel optional libcupsfilters-dev_1.28.17-3+deb12u2_i386.deb f2a738c3aaea1d18df318b3f6aca0c7a 194476 debug optional libcupsfilters1-dbgsym_1.28.17-3+deb12u2_i386.deb 56b0a026b2aae6f4b67f85240f66b3df 129788 libs optional libcupsfilters1_1.28.17-3+deb12u2_i386.deb b59a5274a52b573c8a8bd1f97fcde6e2 59300 libdevel optional libfontembed-dev_1.28.17-3+deb12u2_i386.deb 381aaadc9230967d92d3e32d64bcce3d 48536 debug optional libfontembed1-dbgsym_1.28.17-3+deb12u2_i386.deb ae3bd3af782e5152811b0196a040c494 54260 libs optional libfontembed1_1.28.17-3+deb12u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEaPzFtKPtF0JrKPV5iZlfn74WV6kFAmlIXsQACgkQiZlfn74W V6mCUQ//dU+ns4wdiEBztkZvxGC4acv03cZF85LudDZQoWEpWQ7+ffR9WOULjbZf 68YR2VsY+ykiBBbL1zybg5kxEEaQsMBHoDA0Op7xQRbQszUZg+9oQSy3encYcDV7 Z9BHekcXRchAeJYeZEaEdUxesTob74lGpxrob4XEzCv2R0wbRGuNcvdzLjVjlhlm NdbSnu83hHGL/5SCX8JQdXfitRx3na88fnlvtLj/RnksVPG/8IMVBgY4ld/GAoFp cGzWbLjAMwuXJ1pxkKB62LzSLotqbviYBgCAPZf+XKBGdttADQD+SPggxxCFd4k+ 3pNBPTQ71W7vgJivNDTvpTosFXK35E2y+bN4jU2OCnRGVuaoqbMzIBHPnLIjZrAD fjIAQvHFmWn+lLLpAnGbj9qS5SEd6BC4/YQZxC4vZlFv1UVzokifG5UQmUwIf22X FS4j4O/Z7P3fVaDS0xQvZvV8jleqPhPJNIxzKX65xwXlZkbRP/v8TqA79XXIGaNc 25zn2r23a56rdtKEcB87jwsliAGat2OLmo2UC3CipaQS8UH72ukVSI11JWk198Ap EHF6qiv2vMLkVX1mbJ/Zk0g9FNO5b4fm2/LlyPlLzi6djjkZKbgMY0273ynQ7oRv K+zSOVy9Pgk2Cfquefd9IBRvBrn83Gil4LwKYIHUZVQV52CbUsI= =Dc0p -----END PGP SIGNATURE-----