-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 16 Jun 2019 18:10:05 +0000 Source: graphicsmagick Architecture: source Version: 1.4+really1.3.32-1 Distribution: unstable Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changes: graphicsmagick (1.4+really1.3.32-1) unstable; urgency=high . * New upstream release, fixing the following security issues among others: - DrawImage(): Terminate drawing if DrawCompositeMask() reports failure, - DrawImage(): Detect an error in TracePath() and quit rather than forging on. * Backport security fixes: - ReadTIFFImage(): Fix typo in initialization of 'tile' pointer variable, - WriteDIBImage(): Detect arithmetic overflow of image_size, - WriteBMPImage(): Detect arithmetic overflow of image_size, - WriteBMPImage(): Assure that chromaticity uses double-precision for multiply before casting to unsigned integer. Checksums-Sha1: 42c772a2c77023748460014bac096a635a807283 2890 graphicsmagick_1.4+really1.3.32-1.dsc a18e390061e9b31caf860134e583a81e9be74e61 5535224 graphicsmagick_1.4+really1.3.32.orig.tar.xz 8a4eb25436d62e4c552cc199858ddc90b57a9b52 152236 graphicsmagick_1.4+really1.3.32-1.debian.tar.xz e5a9f1fdb2fb6e1d3ccee304b50a112dd1456b4d 12059 graphicsmagick_1.4+really1.3.32-1_amd64.buildinfo Checksums-Sha256: 3b8bd489d3f27d2c043da70864aca01cf05a1145aa3430e2327aa2bbb42ebedb 2890 graphicsmagick_1.4+really1.3.32-1.dsc b842a5a0d6c84fd6c5f161b5cd8e02bbd210b0c0b6728dd762b7c53062ba94e1 5535224 graphicsmagick_1.4+really1.3.32.orig.tar.xz c7827e5b017348da6737a6d37fb3f7af7e9a65f03bc1f9976af860c4dc47d6f1 152236 graphicsmagick_1.4+really1.3.32-1.debian.tar.xz 7561eec43bc28af7b1d84d20db759853f10ed4da64192b114dbc564c0e1a0a33 12059 graphicsmagick_1.4+really1.3.32-1_amd64.buildinfo Files: 2a1624d945e382793ef43be88a9dbd81 2890 graphics optional graphicsmagick_1.4+really1.3.32-1.dsc 3eec43b0198e278ba2d12db6ab5b6358 5535224 graphics optional graphicsmagick_1.4+really1.3.32.orig.tar.xz cba473f2315054b109f9ea76ce768a7f 152236 graphics optional graphicsmagick_1.4+really1.3.32-1.debian.tar.xz db5ba5494e086745e3a7c406626ed7f0 12059 graphics optional graphicsmagick_1.4+really1.3.32-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEfYh9yLp7u6e4NeO63OMQ54ZMyL8FAl0GvpMACgkQ3OMQ54ZM yL8Ucw/8CURRf+twa/EY5X59aNQJa3U6li3mjwNCXF35SxOdclZaB8hVTrm2gB7M rTK/4YAsSvCbQouApKLtXGfIVaR73BZR7IOsEQm6xtsajN4TdCSfMVsbo74z8e3m XVFEJepNCnx/+3hOxDjAZykPweFECUZnUjXZSNpQFw416FZqFMaGLzqvJdPL9uk2 cVtjIGfcY8UMCEqc2U584x6qv52VbTFnumsDQ9y5DhZToHC/JCD28NCJGxImTL9L DnNC2ugXlzMIwKEg9uFUmgHeVFegX3WV0VXHEVW3b2+2A5hGsxlr8I4hiHY7sCyF FjAdYWipJPAuFrcyLniMMf45MMQ+SH1JGGGws57oO99UDVyV2Ejv7Zu4cmEW4UrT LhepHsmxQc4M2NyBpk0Dx302SuV7sfktgrGOuilSdjw/mwaztfeZhhdYhvWe+LDk CCx/z2Q/O+0dIzvasCjgB3K9YYgUk/1VN/v57U1qlQVLcWYHZ6gMux1LPvQEc7/P +JxaT4R4J3WitInms9HQJNzbtH/2wjPhfMM8Z6D553lxeivsMUTNHWQ33x+RJJL/ SjVpxvofMn5NAzOaZs07mDvVJ0OUa95vjsQ+kp7vu5B7lrFYfU98IgUqrtfl/jIx WA+sir1n27TkhSOGufmdVkvflxUdLKQnmKHpiuKBv4PTkyFQbx4= =/b1f -----END PGP SIGNATURE-----