-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 06 Apr 2024 22:40:50 +0200 Source: imlib2 Architecture: source Version: 1.7.1-2+deb11u1 Distribution: bullseye Urgency: medium Maintainer: Markus Koschany Changed-By: Markus Koschany Changes: imlib2 (1.7.1-2+deb11u1) bullseye; urgency=medium . * Fix CVE-2024-25447 and CVE-2024-25448 and CVE-2024-25450. A heap-buffer overflow vulnerability was discovered in imlib2 when using the tgaflip function in loader_tga.c Checksums-Sha1: 8dacf75d3fda25c67c61a4c0e8e65b2971823e6f 2277 imlib2_1.7.1-2+deb11u1.dsc b5fa53aea7e7a8424b6d1c1292a638ad31c2b3a5 11400 imlib2_1.7.1-2+deb11u1.debian.tar.xz bcdafcc80364c96b0b94ea9529c3928c3f9373ac 8757 imlib2_1.7.1-2+deb11u1_amd64.buildinfo Checksums-Sha256: 37e2c99008ce93cdd0c0c6c258c17fa137d55cd21d4f7f72f84c0b2166d6b26f 2277 imlib2_1.7.1-2+deb11u1.dsc 6cdb80e4e08a0806f43531300f086a91ccb5fdd7dc516c66ff6c0998af389f85 11400 imlib2_1.7.1-2+deb11u1.debian.tar.xz 08a00eb22a111f16cbef3661709115648130a20fe5cb593e5869e806583383c0 8757 imlib2_1.7.1-2+deb11u1_amd64.buildinfo Files: 76a7da4caa8c20fa652f6119e60c4401 2277 libs optional imlib2_1.7.1-2+deb11u1.dsc 7cd91006abdcadcc25e6218fa2eac9f5 11400 libs optional imlib2_1.7.1-2+deb11u1.debian.tar.xz 6cb177bfdafd3c58bc0d8349c5635fb4 8757 libs optional imlib2_1.7.1-2+deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAmYRtI9fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkOgwP/0eH8aCKM+QlanChKeLA+M6B7D1n2cLfmrxx vs3SumSj2Rj72F2Oib408x9dOf4yG9pSAFGks++6EHbeqYhAhlGqVH7fnw2hz6uy BMuVJbcYZBghX3tWzjSVzyRP3Opg0Lfi86dniDyVNYX2XdeJr4plENKMFDITJ3Ua Y9jh2PlwgWLl9JzrkX7BZSj9DfOLXaUCfhXN8zVnGzPpEyv5Mvl0vP8++CiHKowN 94tWPsCvTz6/R3oWRRg277/w11IyaebsJoc+hbCgx8tqhVnwWNcP8xYRSU6cyu63 b3l+xbwpiTGC5KIpGo2rA8V82GX5NuzW5w11qP1vtq/7/FXpERCjnASXUjLDqhUL TeSxnBqBCze0XAeiU1wRSQ/O1naWMsvG6f24OfRoKND/6RFv1bY1gPUl1673TUNv ij/amDWFileRTxqPKo2vY2faYow0uCRfYfDn1CyWYx8ngSIpYQFTKDGwJ2TfHWUx gDuiiKrf2IwL6racp+hUGxHKWdM8lKEDUsQXioJUSrWvhFUHVzkwuRJVqgMFNSg8 9YwiEiTByox5oBfeQfG7+YmudNvtAX2DvWWblTamgfxp4Uq4bp+G4gRZ7w2opP/x nyFqGcYaNZPikmOym2Mkp1rpjjj1EX5j6/TX6amiFR9MJGgEYTTOE7+GFQ9Sq9wl dGS2jJC1 =wryc -----END PGP SIGNATURE-----