-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 06 Apr 2024 22:40:50 +0200 Source: imlib2 Binary: libimlib2 libimlib2-dbgsym libimlib2-dev libimlib2-dev-dbgsym Architecture: i386 Version: 1.7.1-2+deb11u1 Distribution: bullseye Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Markus Koschany Description: libimlib2 - image loading, rendering, saving library libimlib2-dev - image loading, rendering, saving library (development files) Changes: imlib2 (1.7.1-2+deb11u1) bullseye; urgency=medium . * Fix CVE-2024-25447 and CVE-2024-25448 and CVE-2024-25450. A heap-buffer overflow vulnerability was discovered in imlib2 when using the tgaflip function in loader_tga.c Checksums-Sha1: a2ced7223a771ac8fa071d16e971c180d8b7c934 8278 imlib2_1.7.1-2+deb11u1_i386-buildd.buildinfo 5ad0775e28751fd9b0bc48c052299eba21c02272 411612 libimlib2-dbgsym_1.7.1-2+deb11u1_i386.deb 26a742b95a3a47ace17c9ca552b9249b97382f64 57620 libimlib2-dev-dbgsym_1.7.1-2+deb11u1_i386.deb 65e50500887c113539dfe677d945bf069a52d345 233940 libimlib2-dev_1.7.1-2+deb11u1_i386.deb 600426dc818f7eb118449f99bc90fb4563134ae3 212432 libimlib2_1.7.1-2+deb11u1_i386.deb Checksums-Sha256: ec2f0d560a49d196d878e36814f4293586a1260765867f4bd0cd8d72568534e2 8278 imlib2_1.7.1-2+deb11u1_i386-buildd.buildinfo 7bfdca76a500e1f285c4d9e2e5266cbafb015dbac6e4d55e75d6949a675f857e 411612 libimlib2-dbgsym_1.7.1-2+deb11u1_i386.deb c4a2054111be6531cc8b7d9a463f806127e7119647057ef239fc2eb08a0ac3c1 57620 libimlib2-dev-dbgsym_1.7.1-2+deb11u1_i386.deb c74323f728c3316474cce6134eb3ddf84d49f2b6e496adc10a15d8005b246041 233940 libimlib2-dev_1.7.1-2+deb11u1_i386.deb 82298b5aa4a687cfbc1bcf1d78a3db56c8644ad9bfe0cf14dbe7413fda521918 212432 libimlib2_1.7.1-2+deb11u1_i386.deb Files: 9b1948af3acc61905cce68da0abd2c0c 8278 libs optional imlib2_1.7.1-2+deb11u1_i386-buildd.buildinfo 96afae4fdacb7fbe93f47fe5498455f8 411612 debug optional libimlib2-dbgsym_1.7.1-2+deb11u1_i386.deb baf301f109a9911fc2f5013cf7ade8fc 57620 debug optional libimlib2-dev-dbgsym_1.7.1-2+deb11u1_i386.deb e2efe946d1380acedb219a4b1262575e 233940 libdevel optional libimlib2-dev_1.7.1-2+deb11u1_i386.deb 59b2d0a5b82464311a013e81ab5c3dbc 212432 libs optional libimlib2_1.7.1-2+deb11u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEGBeuno8wiDXCewDuqqLQG5ksqMMFAmYm0GoACgkQqqLQG5ks qMMGgRAAuqgfQR/eOgNTU2DDukl/g28g4SFuYsbmdljnP/RR5c1JZ+Z8AUAFbbrR 8weKzavmpkqVD+znf/rOsgCgfrUf0JUgNSdxqns8vzKo/Z6p8Ew2gJ5lw3O929DY ZB5PhU9kNvqgcSGxWCkpuFG5PdlUJ6MIRIyWWnZsEiEOv7r9boLI+pFn+cDgzSmA EatYHnYffhxH/zP3qQJjwNKAUcO3lZ0BG6jQQ4qo2SPHZtrS8175A+vflLkkJ89H 6rHqqxdmi70gXZ0KeG+OLXosDQV0rRWRjgsLEYyVRLlA4OYKpVA3LNeeOa+MDFJF akxguOwZsNxGsh7GaHmdaY9Ky7S0S5EXq30epcrkqsJTZUFf5vLqi5i+4mEQL6h5 UM1UG/6TfHI7wN2vr8szUX47cvWnWMtkAVuRpJiuYMsHh8jLF0x2mVDrt0xunths +zqZydwr82uSlg7pQgpFT+Oj8qSQuD95f36BaIjNyf3XJ0B+RVNxNWU8v2qSs5EK OjsZr4JPYZxkEbtJmGWkU58INXIewvRx1TG5cWZ7LnQ/1Q8IwhHV/US5cJC32fgA 2dRe2He109gnDI991wBI47eXKedShlcv/dF6ODUA1spC2eRT6GFekPBcLIQjDA5W SolngFCUTeNsQOH1baYW4Xp5tCq972+WHlRwL6Ob4sFhkxGniMI= =iynn -----END PGP SIGNATURE-----