-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 22 Apr 2019 14:41:32 +0000 Source: graphicsmagick Architecture: source Version: 1.4~hg15976-1 Distribution: unstable Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Closes: 927688 Changes: graphicsmagick (1.4~hg15976-1) unstable; urgency=high . * Mercurial snapshot, fixing the following security issues: - ReadXWDImage(): Potential for heap overflow; Address header-directed arbitrary memory allocation, - ReadXWDImage(): Address segmentation violation and invalid memory reads with more validations, - Make built-in color tables fully const. * Break gnudatalanguage versions that doesn't initialize GraphicsMagick library (closes: #927688). * Update library symbols for this release. Checksums-Sha1: ca9a31e442e410e6e026d5cda8c2e25eba5e8871 2855 graphicsmagick_1.4~hg15976-1.dsc 0ca8e90875c28cc6cd82d72b629d1e207f27dbdd 8877504 graphicsmagick_1.4~hg15976.orig.tar.xz e8c1a16dd96df8e2edea547aa49fb4c2a1d55633 144392 graphicsmagick_1.4~hg15976-1.debian.tar.xz 0df5e7063f84a3a77d7ffc594d164dd1c225c1e2 11892 graphicsmagick_1.4~hg15976-1_amd64.buildinfo Checksums-Sha256: 96ba90978f43d87f953ba2752c5e9e1fec61ec2041fae009f951f1d6f26245f6 2855 graphicsmagick_1.4~hg15976-1.dsc deee4a0ce1a602228eaf470a4742fa35a41632cb74c56fbc83673e2f4633ed0a 8877504 graphicsmagick_1.4~hg15976.orig.tar.xz eeb603a30c9a33321cdb452bbc9ae3cc1fb6c4a890be420d212ae3f08b869243 144392 graphicsmagick_1.4~hg15976-1.debian.tar.xz b8648f26272fbddd3029a871fb1c552172ff8da0e92039646ef2eef4a92dd8ba 11892 graphicsmagick_1.4~hg15976-1_amd64.buildinfo Files: 9e51351765394c709f45560c72ef206d 2855 graphics optional graphicsmagick_1.4~hg15976-1.dsc dddfdf65b6401be562ca4301fb296da9 8877504 graphics optional graphicsmagick_1.4~hg15976.orig.tar.xz 8a29c46bbe5f5d2b36a8638ae31bdc49 144392 graphics optional graphicsmagick_1.4~hg15976-1.debian.tar.xz 4e9f17e22e0d2fc66e7a3dbbb90cf83a 11892 graphics optional graphicsmagick_1.4~hg15976-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEfYh9yLp7u6e4NeO63OMQ54ZMyL8FAly9498ACgkQ3OMQ54ZM yL9xAw/7BJViVb7p8ikBT844G0tQnUp0vOOPqB575BWOTsoSzwUzXlrNpM747r3V YJtp1dyiRFQ8iavb70ryCMdr0DYGP9p5KwU4y/MIhN8g6N3J7XXSWOGSWol02pbY lGSwdYALoclQKLTirqaq+EJVXoIur+Y6uIU9k4ON/HrftSReXcw3QPGmSFRbIQSR ytHYkB3FRE+sg5vz8auEgh6YEQ8ND6o83PWL46lcq11yu9GXn+q07WcViOX3D+bi ViluHTJbD5qPsPvA6PoiAGHHOGGG88nUN9q5EVSj0VsSL0tUlWvgHhf8DBbpAsbh 2M6ELLLaN0j5meOoYDpYAa/07uJ7NuRB+g6YudA8IJ73K3+8bIH3k0IUwv1FwnuY uEiOqAk8boxR+emv3PEjphexv7JX27k2shhwOoEHSmnda+7L1OwPR49SobwIuS0T RJ0FEIIZp7PawCIoshrKHVjtVei3FetzgKvN936B6ZpfWx0wGK4+gkkby31Oft/5 RJQQV9cwwPBn/BVLed7o7hoOB30sKGkADSlKiZbttEgGf1KSFOYkZZ6Gudkqjml4 ImiHxCbLWPN13J0By9YQqVXjyiLh0gTVq08q/8uXdybIVdG3Lka0okQA7+o4sxXa WGGinO8pi009ZI8l4+c8IzbCLq6JH+x7fcBow9CjxZl1CjZ2s7I= =yN3w -----END PGP SIGNATURE-----