-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 18 Jan 2019 18:15:36 +0000 Source: vips Binary: libvips42 libvips-dev libvips-tools python-vipscc libvips-doc gir1.2-vips-8.0 Architecture: source amd64 all Version: 8.4.5-1+deb9u1 Distribution: stretch Urgency: medium Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Description: gir1.2-vips-8.0 - GObject introspection data for VIPS libvips-dev - image processing system good for very large ones (dev) libvips-doc - image processing system good for very large ones (doc) libvips-tools - image processing system good for very large ones (tools) libvips42 - image processing system good for very large ones python-vipscc - image processing system good for very large ones (tools) Changes: vips (8.4.5-1+deb9u1) stretch; urgency=medium . * Fix CVE-2018-7998: NULL function pointer dereference vulnerability in the vips_region_generate() function. * Fix CVE-2019-6976: zero memory on malloc to prevent write of uninit memory under some error conditions. Checksums-Sha1: b398c254cfed5cbffa3745e5062d384077bdf849 2707 vips_8.4.5-1+deb9u1.dsc ab4d56f157f24fdfb7dc9e5716ce3b10098a2244 11404 vips_8.4.5-1+deb9u1.debian.tar.xz 4c9e63c33d1009ca11f36418f9fdd91eef36b59f 76888 gir1.2-vips-8.0_8.4.5-1+deb9u1_amd64.deb 46db758026659bec37cb9929ed37f044a5902d88 927132 libvips-dev_8.4.5-1+deb9u1_amd64.deb 16575d7bbf301a2af118dfb5b91cea217cff002b 282918 libvips-doc_8.4.5-1+deb9u1_all.deb b4b21ce7654ea834a3bb5a32975ffe20f6b8b3d2 63782 libvips-tools-dbgsym_8.4.5-1+deb9u1_amd64.deb 598ab453712d8149209fe07fa90a2ad68a9394dc 93458 libvips-tools_8.4.5-1+deb9u1_amd64.deb 69604e10cdcff9f64e71b05cce222f60dadd9eb9 3294286 libvips42-dbgsym_8.4.5-1+deb9u1_amd64.deb 3acc79b6a177cba9e7cec4fc36fbd9861fed24b6 736148 libvips42_8.4.5-1+deb9u1_amd64.deb bbb7d3b65f0f43c0b9047d082b5b601e9e5c44e8 1215426 python-vipscc-dbgsym_8.4.5-1+deb9u1_amd64.deb d322c4b7bffa490569417cd0ca0d379a0913f8f5 281254 python-vipscc_8.4.5-1+deb9u1_amd64.deb 19d758d223a5788ffd35f4457726847ff9df660f 18472 vips_8.4.5-1+deb9u1_amd64.buildinfo Checksums-Sha256: c70f56bb786aaac174affbd64a59360fd5d17ffd7f199ee586f4758ff5214f8f 2707 vips_8.4.5-1+deb9u1.dsc c344166d181aff74bb322510dd1ab1a2a184312be288f6f2d18ad40a0205ba77 11404 vips_8.4.5-1+deb9u1.debian.tar.xz a4b8348deaac99734d7055f45aa07a4ca42debdebb5480f5c57de7b0004f6a09 76888 gir1.2-vips-8.0_8.4.5-1+deb9u1_amd64.deb a1c9131cafe8c654cd82479d6682e64a62cdda9f64fb400f18b923c8176650b2 927132 libvips-dev_8.4.5-1+deb9u1_amd64.deb 8630ecd884aa4e1623229ea8ab4e6b6dc7aee79df2c2c0bab9dfe4179a6959f3 282918 libvips-doc_8.4.5-1+deb9u1_all.deb 7c4e607e267ba91fcb16d2055a99524c0fcf7c095b58ba71b4f578f2761e8794 63782 libvips-tools-dbgsym_8.4.5-1+deb9u1_amd64.deb 39a03520023951d34084a2baaaba13e40a4696dff74e457a9f79d208f4e108ac 93458 libvips-tools_8.4.5-1+deb9u1_amd64.deb 4a65f704db3067956b6ef06c3251d60f85235c37e2505822bf950a7fa93631a0 3294286 libvips42-dbgsym_8.4.5-1+deb9u1_amd64.deb 582bfc396f5f4dee5bb1b3893270d6508722be5f3096d44155fbd2aaf3fb82fb 736148 libvips42_8.4.5-1+deb9u1_amd64.deb 505a7b40de78d4258ed33de5f95e433c87ac249437d6fd0d3f1ca1c301cc5303 1215426 python-vipscc-dbgsym_8.4.5-1+deb9u1_amd64.deb 17d9139a94f35ce8328865268750107b7fccc68d16c20e36c3bb8a70560ede19 281254 python-vipscc_8.4.5-1+deb9u1_amd64.deb 2c2496bda384256013e1ddff52ab12ed0141429d2f0dd592a24fe4ab97f81a77 18472 vips_8.4.5-1+deb9u1_amd64.buildinfo Files: 7a6a598e24d50535648802b1813c6be9 2707 libs optional vips_8.4.5-1+deb9u1.dsc 3a8280f474093de0555fa5dd56304427 11404 libs optional vips_8.4.5-1+deb9u1.debian.tar.xz 69c27e0a23242efb793229d5d859bcb8 76888 introspection optional gir1.2-vips-8.0_8.4.5-1+deb9u1_amd64.deb d6f63fc524aeb17c4c9bf0126987d619 927132 libdevel optional libvips-dev_8.4.5-1+deb9u1_amd64.deb 9e0fd93192a5ab23dad62d5567066012 282918 doc optional libvips-doc_8.4.5-1+deb9u1_all.deb 228851cb316dcfcf0366314b84a8d926 63782 debug extra libvips-tools-dbgsym_8.4.5-1+deb9u1_amd64.deb 3a6ff543af241e121040cd0f08d49c49 93458 graphics optional libvips-tools_8.4.5-1+deb9u1_amd64.deb 31b2083f7ba513f25f9e6d117d9261d4 3294286 debug extra libvips42-dbgsym_8.4.5-1+deb9u1_amd64.deb cf833a428cfc9c77c4aabe58c4f1e462 736148 libs optional libvips42_8.4.5-1+deb9u1_amd64.deb 109173bfa61c4acb695490047ddd3d06 1215426 debug extra python-vipscc-dbgsym_8.4.5-1+deb9u1_amd64.deb fe5b09bcd77037ebc1a874bc5bead614 281254 python optional python-vipscc_8.4.5-1+deb9u1_amd64.deb 4ea3af489a775f5651ac37d70f65c2cf 18472 libs optional vips_8.4.5-1+deb9u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEfYh9yLp7u6e4NeO63OMQ54ZMyL8FAlyhGNUACgkQ3OMQ54ZM yL/PDg//dn9QKIokHxQUEm0WRfFkH5eLU79YHuTRXkARcwWiKSdM3il1TAlMBCa+ Tucf9XllkYVtKYv8JEVIXZ6ulE+HpfzcSS2Y1WuokQ6LDyujsDZ5Wnbm0LYFIycU XrpP1fmygXlhHrKmB0le5tX9nFBHRu+QyMjTm0MWb1u+jaJHo1ybA4blA9yxvkNy Wv+mAIjaMlffE0ZhqDmICCQaFZo+k5YQLfxvU1fKKoaolZ5x10SZ9V4GsuKzSojh yBVzqd1NLBAeqzVzkINPb9b6NSBuJp192wWu00avWXNVfmtDEmUsN8hfWslwypSh LphKkDLem0RACk3H2i50WnGmhnPvF9cjV8sMcy/F/rZudYEkWuKcrGTXckeYJ8ht aN9lMyxIL34c/FfwoClK5+7tjkC+tlHEPJmvroGyh1PRuudl0BshTwyOvcg+J9gq T+tfLYZ+Rrr1YN0n1uxcJBNrE/5qqhKvLmpz7Edy0Pasbji2i4Zib9G98N2zE++v 3C3N55waOMyXsqCS/fbJ6Uo/L+fBR+H79fJVi/nYse7XWLKLxBNnQRGYLVDu8ueE n+r1LrltIHU6naMFZSAkBvFdgMw8LjL6gkInozYvzNK/CsJmTvvnvmAZAxt1Z3kq 5bl2Oi0A8OEOz+JcAXnzqknkgj4vNvuHQ+u4AJRmPCWyfvCCcsA= =MTLj -----END PGP SIGNATURE-----