-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 17 Jul 2006 01:06:53 +0200 Source: libgd2 Binary: libgd2-dev libgd2-noxpm-dev libgd2-noxpm libgd2-xpm libgd2 libgd2-xpm-dev libgd-tools Architecture: source all powerpc Version: 2.0.33-1.1sarge1 Distribution: stable-security Urgency: high Maintainer: Jonas Smedegaard <dr@jones.dk> Changed-By: Jonas Smedegaard <dr@jones.dk> Description: libgd-tools - GD command line tools and example code libgd2 - GD Graphics Library version 2 libgd2-dev - GD Graphics Library version 2 (development version) libgd2-noxpm - GD Graphics Library version 2 (without XPM support) libgd2-noxpm-dev - GD Graphics Library version 2 (development version) libgd2-xpm - GD Graphics Library version 2 libgd2-xpm-dev - GD Graphics Library version 2 (development version) Closes: 372912 Changes: libgd2 (2.0.33-1.1sarge1) stable-security; urgency=high . * Apply patch to fix infinite loop in GIF code. Closes: bug#372912 (thanks to Alec Berryman <alec@thened.net> for reporting, and to Martin Pitt <martin.pitt@ubuntu.com> for providing a patch). Reported as CVE-2006-2906. * Include this and the earlier security fix as isolated patches in the source: + 1001_CAN-2004-0941.patch + 1002_CVE-2006-2906.patch Files: e389163781898504ec6e8e0018cd1fdd 885 libs optional libgd2_2.0.33-1.1sarge1.dsc be0a6d326cd8567e736fbc75df0a5c45 587617 libs optional libgd2_2.0.33.orig.tar.gz 50e0aa54bda19f06041d78a5771c7fd1 260955 libs optional libgd2_2.0.33-1.1sarge1.diff.gz 4ef28350291c173754332cc61cb54ba1 128500 oldlibs optional libgd2_2.0.33-1.1sarge1_all.deb bcaaacf60733a35002b999f8851ce3a7 128526 oldlibs optional libgd2-dev_2.0.33-1.1sarge1_all.deb 46c99b85b1faf609147cc111b747841d 150276 graphics optional libgd-tools_2.0.33-1.1sarge1_powerpc.deb 47c92a9a5bbc22637f5fee0223034a97 344206 libdevel optional libgd2-xpm-dev_2.0.33-1.1sarge1_powerpc.deb 505e633e80f425c8b9422e83997ac07c 341538 libdevel optional libgd2-noxpm-dev_2.0.33-1.1sarge1_powerpc.deb 16d8a96a3fc3b28a7355680fedaef3e8 200916 libs optional libgd2-xpm_2.0.33-1.1sarge1_powerpc.deb c8168aa92f4008e2943893fa5ccae820 198830 libs optional libgd2-noxpm_2.0.33-1.1sarge1_powerpc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.3 (GNU/Linux) iD8DBQFEutSqn7DbMsAkQLgRAtaAAKCCriWL5Y/0mJDgmIP5hYlUERpS6gCeI2Z2 mpANkBNFOAkWRvb3Vv0yRdE= =jeaK -----END PGP SIGNATURE----- Accepted: libgd-tools_2.0.33-1.1sarge1_powerpc.deb to pool/main/libg/libgd2/libgd-tools_2.0.33-1.1sarge1_powerpc.deb libgd2-dev_2.0.33-1.1sarge1_all.deb to pool/main/libg/libgd2/libgd2-dev_2.0.33-1.1sarge1_all.deb libgd2-noxpm-dev_2.0.33-1.1sarge1_powerpc.deb to pool/main/libg/libgd2/libgd2-noxpm-dev_2.0.33-1.1sarge1_powerpc.deb libgd2-noxpm_2.0.33-1.1sarge1_powerpc.deb to pool/main/libg/libgd2/libgd2-noxpm_2.0.33-1.1sarge1_powerpc.deb libgd2-xpm-dev_2.0.33-1.1sarge1_powerpc.deb to pool/main/libg/libgd2/libgd2-xpm-dev_2.0.33-1.1sarge1_powerpc.deb libgd2-xpm_2.0.33-1.1sarge1_powerpc.deb to pool/main/libg/libgd2/libgd2-xpm_2.0.33-1.1sarge1_powerpc.deb libgd2_2.0.33-1.1sarge1.diff.gz to pool/main/libg/libgd2/libgd2_2.0.33-1.1sarge1.diff.gz libgd2_2.0.33-1.1sarge1.dsc to pool/main/libg/libgd2/libgd2_2.0.33-1.1sarge1.dsc libgd2_2.0.33-1.1sarge1_all.deb to pool/main/libg/libgd2/libgd2_2.0.33-1.1sarge1_all.deb