-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 09 Jan 2019 22:44:10 +0100 Source: libcaca Binary: libcaca-dev libcaca0 caca-utils Architecture: source amd64 Version: 0.99.beta19-2+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Sam Hocevar <sho@debian.org> Changed-By: Markus Koschany <apo@debian.org> Description: caca-utils - text mode graphics utilities libcaca-dev - development files for libcaca libcaca0 - colour ASCII art library Changes: libcaca (0.99.beta19-2+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2018-20544, CVE-2018-20546, CVE-2018-20547 and CVE-2018-20549. Several vulnerabilities were discovered in libcaca, a graphics library that outputs text: integer overflows, floating point exceptions or invalid memory reads may lead to a denial-of-service (application crash) if a malformed image file is processed. Checksums-Sha1: 04ca053f80a26c268d60794ee11ba8de22573959 2347 libcaca_0.99.beta19-2+deb8u1.dsc ed138f3717648692113145b99a80511178548010 1203495 libcaca_0.99.beta19.orig.tar.gz 9908338aea83ed5c02c3ebac1d90981139137915 12316 libcaca_0.99.beta19-2+deb8u1.debian.tar.xz 4dc3819d05762cb83abe0b542f57c2e5cae404c5 840292 libcaca-dev_0.99.beta19-2+deb8u1_amd64.deb 9dedce5b1f586796da1b7c296f186b584a1869dc 347122 libcaca0_0.99.beta19-2+deb8u1_amd64.deb 92d1a72e2b07b1dba77e3d77b3056951467d5240 196188 caca-utils_0.99.beta19-2+deb8u1_amd64.deb Checksums-Sha256: ef39d175eba4bb060f79a3223be361ab84c9917275014bddff54e68626aebf73 2347 libcaca_0.99.beta19-2+deb8u1.dsc 128b467c4ed03264c187405172a4e83049342cc8cc2f655f53a2d0ee9d3772f4 1203495 libcaca_0.99.beta19.orig.tar.gz 0980d7f8a56a1cf62f768e6c5315adc347ecebf9140090d0ee8459eb91721b86 12316 libcaca_0.99.beta19-2+deb8u1.debian.tar.xz fca9498d4ab2eff50e30873f05d7ec35b9327868e851d36247b57626f982715b 840292 libcaca-dev_0.99.beta19-2+deb8u1_amd64.deb 7bc84d81c1efbeb661f87618e3ce2396819cc48b3942b0c577c5a7260c6ed3b1 347122 libcaca0_0.99.beta19-2+deb8u1_amd64.deb b0ad8385c9e3cdbb76b803ce06fd10c9f8a687ecd1074878e851f8982cee1302 196188 caca-utils_0.99.beta19-2+deb8u1_amd64.deb Files: 191e2111450d95832416aac7181e41f4 2347 libs optional libcaca_0.99.beta19-2+deb8u1.dsc a3d4441cdef488099f4a92f4c6c1da00 1203495 libs optional libcaca_0.99.beta19.orig.tar.gz baced43ba814573d06a4ee6e46b70ebe 12316 libs optional libcaca_0.99.beta19-2+deb8u1.debian.tar.xz da07687afbe8575647f3b273fd60a15c 840292 libdevel optional libcaca-dev_0.99.beta19-2+deb8u1_amd64.deb 106acfc940e5af27499973cc958c9b8f 347122 libs optional libcaca0_0.99.beta19-2+deb8u1_amd64.deb bb185f5dcd7a496d5d784e5fcb4e6171 196188 utils optional caca-utils_0.99.beta19-2+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAlw2batfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1Hk8X0P/j64PNq0quTMy6ErDCSNDxNB0yYyibUxsIxd eCPnW2XUWmuOv8XgMC2bIAwQrOePqDgrZYx429p25J493xMPouWDFjT1FJ28+3oi 7jJQE/mlEk3UAAHOEma7SaNIdtRAA4ymvEu9DFpXr9Zzc9OOPmN6De6QTSYtHL5e pMLBwi+AqGpuv2dMSFSJMnO/7V3HDXjhVQJf+uhDBudphO0DTT/jf4p61s2YeLTw a1cOvq8yNCvk2qX8CDWLHIwl+PQ3zWOSg3ol3iv38g9dDL0C7d8medjtn3cydhTa 7nJ+q+UMlqQWuefNzcy5hINNDr6BJ7DeJ8cikIvCPBNYoz2Y6Vr4gKEx5ZjzRhkN 4djMJxlZByV5PrZULa1riDH3sCIW+/V0eJWOZ6WmBdQrydFy+nSZDXM0vU6axP/x 9cbDHWVlpeOG8LWYSIMkBFtfnu2D5MpCF28NlvhUJn2FoYu2Ayx3eYg6B0UloWzj tASlkjRe18gRe3b+EWlZ1OJPaez65o4w3kKGoTdICLCwybF5qu9TwFQnKGMpEBM4 D+LuNLZv2AD0MtkY5zF5jPad7LO/2exhST8bts9gjOjByOlEXFj/x8H5QJagTYmK R0ygBn3oYVU9sS7EpiFQIXqf1EUU6sYspd+Jh3MDQzE6Vyv+eU28S6hnhBPIpplJ EpVUu5FL =/2/w -----END PGP SIGNATURE-----