-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 29 Jan 2020 19:03:02 +0100 Source: zlib Binary: zlib1g zlib1g-dev zlib1g-dbg zlib1g-udeb lib64z1 lib64z1-dev lib32z1 lib32z1-dev libn32z1 libn32z1-dev Architecture: source amd64 Version: 1:1.2.8.dfsg-2+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Mark Brown <broonie@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: lib32z1 - compression library - 32 bit runtime lib32z1-dev - compression library - 32 bit development lib64z1 - compression library - 64 bit runtime lib64z1-dev - compression library - 64 bit development libn32z1 - compression library - n32 runtime libn32z1-dev - compression library - n32 development zlib1g - compression library - runtime zlib1g-dbg - compression library - development zlib1g-dev - compression library - development zlib1g-udeb - compression library - runtime for Debian installer (udeb) Changes: zlib (1:1.2.8.dfsg-2+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2016-9843 improper big-endian CRC calculation * CVE-2016-9842 improper left shift of negative integers * CVE-2016-9841 improper pointer arithmetic * CVE-2016-9840 improper pointer arithmetic Checksums-Sha1: dd081a7fb95ae7798aaa21871b80c24e684edf09 2661 zlib_1.2.8.dfsg-2+deb8u1.dsc c7c723de179c0d1f3c9d59646a398649b16206b7 361943 zlib_1.2.8.dfsg.orig.tar.gz 8c9f0d57313763c451fe87dcf27d7aa656205fac 17444 zlib_1.2.8.dfsg-2+deb8u1.debian.tar.xz bfd80f06f5d7d296197c5a8ff4e2322bd12713fb 88346 zlib1g_1.2.8.dfsg-2+deb8u1_amd64.deb cc35039cd581059aad7e9ee2154f624d3eef2725 205608 zlib1g-dev_1.2.8.dfsg-2+deb8u1_amd64.deb 34bb6df7b25caaada640ed8cf49ae5711d03a539 182600 zlib1g-dbg_1.2.8.dfsg-2+deb8u1_amd64.deb a36a1acfca00ce9fbf08af39374a7fe3dc224d0f 49072 zlib1g-udeb_1.2.8.dfsg-2+deb8u1_amd64.udeb 2b7d1472f11ba9db83aaa69dfaccda43f7176027 89222 lib32z1_1.2.8.dfsg-2+deb8u1_amd64.deb 37e6ebe1d9c6268df65224555463b4b43f0a00d6 89462 lib32z1-dev_1.2.8.dfsg-2+deb8u1_amd64.deb Checksums-Sha256: 30356ac08b7b18f9f1f0ca1f2a4d9a85a7b2554a94001938c4ec95b69e3c787b 2661 zlib_1.2.8.dfsg-2+deb8u1.dsc 2caecc2c3f1ef8b87b8f72b128a03e61c307e8c14f5ec9b422ef7914ba75cf9f 361943 zlib_1.2.8.dfsg.orig.tar.gz 81a745765a43f8ff16c66d7dbac7ef735bda39adefa52bb2734e3a4c13cf545b 17444 zlib_1.2.8.dfsg-2+deb8u1.debian.tar.xz 45845bb8f493d602f00e6ca46238fb9348189da88addfe7c4d8f42da1c7021e3 88346 zlib1g_1.2.8.dfsg-2+deb8u1_amd64.deb fa6c4f26015eb365c0519318dc251bcc766165cb200c35ba64734bb897c51685 205608 zlib1g-dev_1.2.8.dfsg-2+deb8u1_amd64.deb d4597fd4d2e0721d4be2027ff731843ef6c3b1b5d40601fc4d750dcd90593783 182600 zlib1g-dbg_1.2.8.dfsg-2+deb8u1_amd64.deb d87fa7080b5a94f97d9190c5feafe0f6a309792ce609daa06ce733d6b33fca3b 49072 zlib1g-udeb_1.2.8.dfsg-2+deb8u1_amd64.udeb 453dbc0a9da11c5c8486993603b7a1f525c6ba4175eeb9fb85c6177e320082ed 89222 lib32z1_1.2.8.dfsg-2+deb8u1_amd64.deb bf71795907e282abc8a27358b73e9f4aa04ec8624aa596a3c72b158f2b8be9c0 89462 lib32z1-dev_1.2.8.dfsg-2+deb8u1_amd64.deb Files: 4d00ac3438d262632c4b237ebec52c79 2661 libs optional zlib_1.2.8.dfsg-2+deb8u1.dsc b752e88a9717131354bd07aa1e1c505d 361943 libs optional zlib_1.2.8.dfsg.orig.tar.gz ff3486b4a54db31b4a6c16615c97f15c 17444 libs optional zlib_1.2.8.dfsg-2+deb8u1.debian.tar.xz d37dd2382e606085146211fabb67ef5c 88346 libs required zlib1g_1.2.8.dfsg-2+deb8u1_amd64.deb 85f120c024bdb974a77827b522d56751 205608 libdevel optional zlib1g-dev_1.2.8.dfsg-2+deb8u1_amd64.deb c84dcc89732dcc1d378a39defa31d1e9 182600 debug extra zlib1g-dbg_1.2.8.dfsg-2+deb8u1_amd64.deb 0c8b3d934c990f764dc6a6b175ff3bf1 49072 debian-installer optional zlib1g-udeb_1.2.8.dfsg-2+deb8u1_amd64.udeb 01608ece21afe1f19e30c9dc6185c782 89222 libs optional lib32z1_1.2.8.dfsg-2+deb8u1_amd64.deb 6742f7b06b73edf97d7552715da00743 89462 libdevel optional lib32z1-dev_1.2.8.dfsg-2+deb8u1_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAl4x1dtfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR1O3D/0RPXF7Pk68kqt7VNoccn6evEO2adPv qQhwkLOASLETvDz2Z+zdkwa4LjjegvfmNlCzDh4kD6GAbbGyDH7Vm8OaehZPf32D fie/rhB8CU58cYISOFRi/CPHT8wfE6jnL3jxZr02IINCK15NqxlHg/Mf/F+/b3ZN O2JTkrLB0wYriBbRs2eBtGwEALaAVfTiJMLUOJkpemhyG+D/xLAXjbyr/vi+rx9D FGY+juAiAf36xmoO/bx6oK1o4q1ZgntlJKr5LlumO619NH3luDZzWKGV7J+jdGBb AiUGZoTQ+3o83f6vysG2m0mUbWmYwWc+lA7cMfpfKgUz4TdNAZxtD46j6asq8y4p UH8RVO4js8e/MYh5UAGQ8UGdEpgsh/TY5tETZh1hMDdmDMYVc1dmi9gy0G/BeBIZ CRxr5U0l2ISg6oW30lJF9g7Jxkeum8Qhknh5KaoGlIDSgXVO1xL0yKF2we+igZmO ZBzmleqnyqC4UUGl3WXfFik+CqJwXQGq/hvGRNxh4Nwz1ekMF2Ze1y8tMQ27NF2o OWFCe6u3JMEfkZNK/Wn5Iny+UTLTcPlM2ukcCtf1/jPef4wC0QC/27VpiEo/3afG 1kB0p1KFhY6jDmc3waDdwZTC2P17/xKTJp0G8TJuv1QvvpQnYfSzuQQS/GOlOAAQ PPTd8yLtTFZrUw== =LVA6 -----END PGP SIGNATURE-----