-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 31 Dec 2019 20:58:58 +0100 Source: freeimage Architecture: source Version: 3.18.0+ds2-3 Distribution: unstable Urgency: medium Maintainer: Debian Science Maintainers <debian-science-maintainers@lists.alioth.debian.org> Changed-By: Anton Gladky <gladk@debian.org> Closes: 929597 Changes: freeimage (3.18.0+ds2-3) unstable; urgency=medium . [ Hugo Lefeuvre ] * CVE-2019-12213: stack exhaustion caused by unwanted recursion in ReadThumbnail (Closes: #929597). * CVE-2019-12211: heap buffer overflow caused by invalid memcpy in PluginTIFF. . [ Anton Gladky ] * [2a2e206] Bump debhelper from old 11 to 12. * [044ea9c] Set debhelper-compat version in Build-Depends. * [f776923] Set Standards-Version to 4.4.1. No changes * [5417d72] Replace ADTTMP by AUTOPKGTEST_TMP Checksums-Sha1: 0bf7ec93f64a30af497a9571cfa59191453b843d 2540 freeimage_3.18.0+ds2-3.dsc 64e1dccdd7da8c714fa336130f0c6b89c3516094 22116 freeimage_3.18.0+ds2-3.debian.tar.xz 3256faa94f09d644104cff35e38bd51497cea5a9 6780 freeimage_3.18.0+ds2-3_source.buildinfo Checksums-Sha256: 8d6695e34fab61339d15b79680d5eb5a10c139f1ce9452f3f4a8a9abea9a8fc4 2540 freeimage_3.18.0+ds2-3.dsc d6113b725b7037e9bbac1c5f051accd4e8b8cee2a87e3cbc6fe3fbc45dea1aea 22116 freeimage_3.18.0+ds2-3.debian.tar.xz ff190e874f3cf37f20446212e230f09bfa05fd006ca668a8701a5d9176c2086f 6780 freeimage_3.18.0+ds2-3_source.buildinfo Files: add9bd5cf1991c8580c5d339b57e0218 2540 libs optional freeimage_3.18.0+ds2-3.dsc bfb02091b570f4b159e0d2f2ce981a31 22116 libs optional freeimage_3.18.0+ds2-3.debian.tar.xz 71f1d88eeebf56d052d178e6c41454b5 6780 libs optional freeimage_3.18.0+ds2-3_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEu71F6oGKuG/2fnKF0+Fzg8+n/wYFAl4Lr8oACgkQ0+Fzg8+n /wZlow/+IvNGvj6zpbEwVxaUuyFUFuHFXyNseIdtG3zR2HHe5W5x0Iqt06F3/b2o dnd5DDgSdLkCSSsbkxTbi1sDa+26y+oKL14uKM6ciGT1SzA+AZC/VqF4lGeF2Edy czVYKGiw642wYJlhzAXctJTkvrV57M0VSmOSGp5GCgfk+usVpD+PuJzbSeQrz2Wn MskrSxP7/doe5AFjcaY/jOXpVCoOX0xUjrotacs8Tmn6IAlxfB9F8kYkNlcLPWGY Krt8yDasIHJhuCmNniiUuZfvOksYdB5IpSwRrDpiJx8o+cWFaWUPXApCIYs/r1lA 6QpDXKDj1bxGRgEoeLYck5MNYDo6DA2CewGej3dBiqmXt+rzjoB1s7mpgMWU+n76 ziSNX/Yt/EHoYVimS08nfR+QfpcNSsLZLN+wy74em1mCpxNCGooP1xSh/pwLtgNC RLKL4Tc+bb8cRVU+Yr6NGPh/LejPHu6uZEdCM9Hy0V0p17iO2PhneDKpBmPUfwHH OFsexP1br2Uh3fnRT3yBVtNZbm+jON5KZLsZtMWi6xSND8u3DQFVgJV8heIxID6V XrJmEPJepGgrs7IZGDpECOC1IkOfQLBDcKUh9CwjaOJMvFxwoJk2ByCOPoUMbsBh 7qjE7FrXtgUq2yjgn+Y/uNfrO1Fj8PtVF9NCKnh0vv9DgysrQrE= =Ei/U -----END PGP SIGNATURE-----