-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 05 Mar 2019 16:43:06 +0100 Source: sox Binary: sox libsox2 libsox-fmt-base libsox-fmt-alsa libsox-fmt-ao libsox-fmt-mp3 libsox-fmt-oss libsox-fmt-pulse libsox-fmt-all libsox-dev Architecture: source amd64 Version: 14.4.1-5+deb8u3 Distribution: jessie-security Urgency: high Maintainer: Pascal Giard <pascal@debian.org> Changed-By: Hugo Lefeuvre <hle@debian.org> Description: libsox-dev - Development files for the SoX library libsox-fmt-all - All SoX format libraries libsox-fmt-alsa - SoX alsa format I/O library libsox-fmt-ao - SoX Libao format I/O library libsox-fmt-base - Minimal set of SoX format libraries libsox-fmt-mp3 - SoX MP2 and MP3 format library libsox-fmt-oss - SoX OSS format I/O library libsox-fmt-pulse - SoX PulseAudio format I/O library libsox2 - SoX library of audio effects and processing sox - Swiss army knife of sound processing Closes: 870328 878809 Changes: sox (14.4.1-5+deb8u3) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2017-15371: reachable assertion in sox_append_comment() (formats.c) (Closes: #878809). * CVE-2017-11359: divide-by-zero error wavwritehdr function (wav.c) (Closes: #870328). * CVE-2017-11332: divide-by-zero error in startread function (wav.c). * CVE-2017-11358: invalid memory read in read_samples function (hcom.c). Checksums-Sha1: d9b241787c1b2ce7955ae3ab8ef1d20539762bb8 2318 sox_14.4.1-5+deb8u3.dsc 3afd714e500aaaff373c256051bd7160be29c947 16776 sox_14.4.1-5+deb8u3.debian.tar.xz 3729add2db53516924a6ee03d9d7fd3c3ea2ac8f 137520 sox_14.4.1-5+deb8u3_amd64.deb c3e77eedc920b67b8923e03a783885887e866c97 267576 libsox2_14.4.1-5+deb8u3_amd64.deb 795bd9af93c1eaea446e8ca0d80c12b6eb9ab532 68704 libsox-fmt-base_14.4.1-5+deb8u3_amd64.deb c267a987c301bc9223d5362a02ca444b8d7cd980 47236 libsox-fmt-alsa_14.4.1-5+deb8u3_amd64.deb 9be7bc2a0445529b87a4a67c5076f2d7b1c79d69 44126 libsox-fmt-ao_14.4.1-5+deb8u3_amd64.deb 07cd84ba89162650a42284d7a26faac61b978cab 52272 libsox-fmt-mp3_14.4.1-5+deb8u3_amd64.deb ee73089fb381eeec789f2fce7502ec6260947df9 44668 libsox-fmt-oss_14.4.1-5+deb8u3_amd64.deb 53fc7b2492bba54e2b2aa52a17b9f206d853ba0b 44190 libsox-fmt-pulse_14.4.1-5+deb8u3_amd64.deb 618c7edbc5cc1dcba9317ad3ebb1fc60e7eb2993 41742 libsox-fmt-all_14.4.1-5+deb8u3_amd64.deb f6684dbb65867454923402c1f2158275125baed4 356584 libsox-dev_14.4.1-5+deb8u3_amd64.deb Checksums-Sha256: 9b0c6a01e4a80a218548851e5615624a0a1646b89170ef22ed2b373d042202ce 2318 sox_14.4.1-5+deb8u3.dsc 71bf3a3631064cd77ad36d12faa89d17cfe72413cf3767216c6f8dc2e88cbdab 16776 sox_14.4.1-5+deb8u3.debian.tar.xz 0c133f1f53fa05b1ccbdcfc74ccabbb057b5a040171206e69bc7c0b9ba220a50 137520 sox_14.4.1-5+deb8u3_amd64.deb 09aa1865269f888ebf470778a5dfa758ebf513f849458b2a99ead5ba28636502 267576 libsox2_14.4.1-5+deb8u3_amd64.deb 19beec07183e5beb91e26b0a74147c9ce5c8bc7a8aedb6627f4f07678d77c906 68704 libsox-fmt-base_14.4.1-5+deb8u3_amd64.deb dba4b0f23b361c5afcfdce9254f057781054d7f5d543965e79ea0e6b59910cd8 47236 libsox-fmt-alsa_14.4.1-5+deb8u3_amd64.deb f5c50f03c137b776f2b42295e4f8d4a5a8b9e4cae8bd63cf758884a9522fb893 44126 libsox-fmt-ao_14.4.1-5+deb8u3_amd64.deb 7beaf83cd41bf2fe1b087df9273affc9e03786728144445355f54f437a9c1521 52272 libsox-fmt-mp3_14.4.1-5+deb8u3_amd64.deb 941afe5ed752f7a6a034700c8046ab45c2d12c4e49c35669b25298394c328ee9 44668 libsox-fmt-oss_14.4.1-5+deb8u3_amd64.deb 83a89fc4271d0f49303eff717ec25ab563d6cac793783492d77450b0baac6817 44190 libsox-fmt-pulse_14.4.1-5+deb8u3_amd64.deb ba268ba289127eb637dc36e7abddf4428b1ade2770fc7a081f1b26c06b3fc781 41742 libsox-fmt-all_14.4.1-5+deb8u3_amd64.deb baaa40fa4098aec4a4f35e2b524042bd882f29b48be98503846e7e6d05866a50 356584 libsox-dev_14.4.1-5+deb8u3_amd64.deb Files: 75214863ee23468ccf94554f20bc35a0 2318 sound optional sox_14.4.1-5+deb8u3.dsc 09e9738a6c2528a01a17a9d11f5227da 16776 sound optional sox_14.4.1-5+deb8u3.debian.tar.xz d6d0466220e5d725d3332810b528cc4e 137520 sound optional sox_14.4.1-5+deb8u3_amd64.deb 277c4f3d572e7195eb05bc35a7656490 267576 libs optional libsox2_14.4.1-5+deb8u3_amd64.deb 81177a4cdb24a94630f52c81c7e04974 68704 libs optional libsox-fmt-base_14.4.1-5+deb8u3_amd64.deb 00f64a8e5ff3ea7e616d0048b3ed135f 47236 libs optional libsox-fmt-alsa_14.4.1-5+deb8u3_amd64.deb 79c39913e9c501c9916932cbfcc4ce52 44126 libs optional libsox-fmt-ao_14.4.1-5+deb8u3_amd64.deb 4eb947a9e5a0f4459a04967dd1e681e1 52272 libs optional libsox-fmt-mp3_14.4.1-5+deb8u3_amd64.deb 24cd75f8b1aed68e28f40c6a484d97ac 44668 libs optional libsox-fmt-oss_14.4.1-5+deb8u3_amd64.deb 05a137a2e36ebd6c5425212c2a66bc4e 44190 libs optional libsox-fmt-pulse_14.4.1-5+deb8u3_amd64.deb 8207ee515382a69836ea430a756e4668 41742 libs optional libsox-fmt-all_14.4.1-5+deb8u3_amd64.deb dbf2119cfe41713c4e3063194c66e2e5 356584 libdevel optional libsox-dev_14.4.1-5+deb8u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEUFZhdgIWqBhwqCvuZYVUZx9w0DQFAlx+pcQACgkQZYVUZx9w 0DQP3ggAs6jcAxtiFDXUpSChrxu08zfvM+Ve2AmwKwrprNv8udQDwxBV944ceEv/ zxOB1fbShNzhwpphc4MTm3nWaX9ls0WYTdUU5aAy3B9DCuys4+pSGorFEBT1eh/B F3omdmzj6PyQjyLOrK3HoBRXUcELKo0dQCq3Ift3Wo3v7cH0Jtrf76lb9+ryS1mj 7fNN+vbV7wELWiJssg83a3LCcMaejlwmzi+L9Ckn+J0Lfdv+XSb0QP8ny80RD2KR vDZSZoOoHpoLprXwt6zudRW+qfSbiO8vOyphxXuHuxtap1hzhtmaKLj+L8mI25sW 0NIAJeEfqCg5gv8T3S4hUjNd92Zjbg== =AqaT -----END PGP SIGNATURE-----