-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 06 Apr 2024 22:40:50 +0200 Source: imlib2 Binary: libimlib2 libimlib2-dbgsym libimlib2-dev libimlib2-dev-dbgsym Architecture: amd64 Version: 1.7.1-2+deb11u1 Distribution: bullseye Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Markus Koschany Description: libimlib2 - image loading, rendering, saving library libimlib2-dev - image loading, rendering, saving library (development files) Changes: imlib2 (1.7.1-2+deb11u1) bullseye; urgency=medium . * Fix CVE-2024-25447 and CVE-2024-25448 and CVE-2024-25450. A heap-buffer overflow vulnerability was discovered in imlib2 when using the tgaflip function in loader_tga.c Checksums-Sha1: 01bb104585b4bff8a1d1f7fe3c3ce76b35ce5f19 8345 imlib2_1.7.1-2+deb11u1_amd64-buildd.buildinfo 3d447d1d70b226400b11bf5ddb78df3edf96473c 471044 libimlib2-dbgsym_1.7.1-2+deb11u1_amd64.deb c7c66689e052c2bfdd8b4ecf22e372512b45952a 63500 libimlib2-dev-dbgsym_1.7.1-2+deb11u1_amd64.deb 59eece09dc5915554efffeaa7f94c1634aa37504 232260 libimlib2-dev_1.7.1-2+deb11u1_amd64.deb 937fd3160fa61ab35f73aa5e2ad5c1f5316eb310 212392 libimlib2_1.7.1-2+deb11u1_amd64.deb Checksums-Sha256: fd0b8e9c029bcd889591c48cd2fc295bbae65990405cc3d0133d48612b8ed478 8345 imlib2_1.7.1-2+deb11u1_amd64-buildd.buildinfo e08b897228863fa8836cf6c084086358365f9e0bec8dc06d17cb37b3b601bff7 471044 libimlib2-dbgsym_1.7.1-2+deb11u1_amd64.deb ca3095441ebef7aa3190498a11c114f7af88f282d9740bf82024d504cf5259c9 63500 libimlib2-dev-dbgsym_1.7.1-2+deb11u1_amd64.deb f7d6ebe1d18a519982f644e05abbd48344d5ddd60977848a38ea8ab2fe57c35f 232260 libimlib2-dev_1.7.1-2+deb11u1_amd64.deb 7413160d473a9f947a6ca9d9daeca656f6dacfb297e126a275925da954c58393 212392 libimlib2_1.7.1-2+deb11u1_amd64.deb Files: 923b47b787f9fbce2afbbb6c8dc2b2d3 8345 libs optional imlib2_1.7.1-2+deb11u1_amd64-buildd.buildinfo d9aecafd5f8474ff9df63951a775c4f5 471044 debug optional libimlib2-dbgsym_1.7.1-2+deb11u1_amd64.deb d8c4c429d0e27eb1d44dcbd6fe2a48fb 63500 debug optional libimlib2-dev-dbgsym_1.7.1-2+deb11u1_amd64.deb 37fbf794f0832f594097ec60cac6b21a 232260 libdevel optional libimlib2-dev_1.7.1-2+deb11u1_amd64.deb 9cf001923314a374d52733bce78b18d4 212392 libs optional libimlib2_1.7.1-2+deb11u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEgdRoRGwEM09wlaMzOni7ZmUpKEcFAmYm0DEACgkQOni7ZmUp KEdQVA/+MplCOY3QeSdhue3X2pJ7Qa9B1OqMhWzwuEE2CY5KPWcH34jKGEaPEQAg MF5Z10nr+XUbhQM+cs7Ra8wOQXOjPsfyycteR1EYVWepaMMAtEyi8k+NCbV7uh2T W+gJXFsuY37CfxL+aIVI9y4+Q6edWmogz0wXFn8eFhLo2g/H5+Qj6F3UfjhH393/ aOsWH+V/chvIPSlRj8M0OBRkad/o+ei/XB/b87AhwdE/wYlgE5lV2BWmQrfCBUdF gdqtA4HLjhi2ILiQInlg+i9qMdF1FORVfGp6MT7hU40tkTIblHg5MrEUXV0ge836 rLnd+dzO4gz4UQ6xvfMZHLvL3kH/SSEiP2YgNRT6ef5QAtDgckUfwi544eZKHrTz EqXwtn8KqxjtcYwXNES2ESx5CRNBs+sKxoCLOKKcVgrVrfg4dJtWXLu/W4dV+7kF QL2rsPUEMvrIfIIOtBE5mHDLMnS0wexPwC0VYLFpfHITvlk8qgaVk1BmA4h1VSKz iYYtNk0Ml7x2A6Lsi54d9IShQgF31UJ8QwdDFPSii1pZqRGwcHnZDlEBmez/r/ss 0Q5Ei5Ma3VhyQKQ4Fj25G34njRtQxbYPwgYzQeHlLa4PmtkQTZwI+dTESLZNyv2r fUjSzvup/Pd1aAORWLnqO6yWswl601HfOjIWafvUbWKFcU3+9dI= =6VVS -----END PGP SIGNATURE-----