-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 30 Jul 2020 12:58:32 +0200 Source: json-c Architecture: source Version: 0.12.1-1.1+deb9u1 Distribution: stretch-security Urgency: medium Maintainer: fabien boucher <fabien.dot.boucher@gmail.com> Changed-By: Emilio Pozuelo Monfort <pochu@debian.org> Changes: json-c (0.12.1-1.1+deb9u1) stretch-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2020-12762: integer overflow leading to buffer overwrite when reading specially crafted large files. Checksums-Sha1: b5af518645669f71a619c9bda6e534a2e08ab3d0 2077 json-c_0.12.1-1.1+deb9u1.dsc 3348f4184ddfee506989e9ea1ddb3d689391c7e2 528103 json-c_0.12.1.orig.tar.gz 4562c949c0a69c6e80f4eded944c095279fa0996 8016 json-c_0.12.1-1.1+deb9u1.debian.tar.xz 76f7c30dca8a4772c98d60769890a7678f9ceeb2 5300 json-c_0.12.1-1.1+deb9u1_source.buildinfo Checksums-Sha256: 4de90e7e3909807e54a006c2f55bd001b9ef1b8124e1dd1770a37a755ccddb31 2077 json-c_0.12.1-1.1+deb9u1.dsc 989e09b99ded277a0a651cd18b81fcb76885fea08769d7a21b6da39fb8a34816 528103 json-c_0.12.1.orig.tar.gz a997e46746308b3e82d4759251108983c66443d71f1ffe480458c6bf4d28ce89 8016 json-c_0.12.1-1.1+deb9u1.debian.tar.xz bd137abe5e0592d3cd03a0ef7a5e42f51bd3c45c1c71861542205130c9c6068a 5300 json-c_0.12.1-1.1+deb9u1_source.buildinfo Files: 565684b91f94b4074594652703055275 2077 libs extra json-c_0.12.1-1.1+deb9u1.dsc 0a2a49a1e89044fdac414f984f3f81a6 528103 libs extra json-c_0.12.1.orig.tar.gz 473a2d389582c3be7b25d4ff1027b883 8016 libs extra json-c_0.12.1-1.1+deb9u1.debian.tar.xz 042f78d9042a604eb411b4327b7251ec 5300 libs extra json-c_0.12.1-1.1+deb9u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAl8itqsACgkQnUbEiOQ2 gwJPiRAAq1TDmYeEU6CZBcdF5bpfA+zSPvqxCzqaEUnyvx87c8vRrwcPDhAw14/k KgC1pHcSvQPKKkOAtR70qBfqCoZ9kVpcb7kA3ETGg4d57bCq76lWOwZk05E+SDKh EZawpdSS724Y7y6TKpX+bik8Czqn1QsJ59WBKzSWmBjjvboEiDX93SRzXGei+ZRs mfMG3ykVAB9tvsvUqd5o8tm+myKBCa5Vw4l2wF0NbKhocWFjPthfJ+4Ea5QfRbM/ JH4l6fvf0KohFuAbTBckJxzYvHFehz/7Y8Zu3hjAYMe+BIlDM2YNFzmWLFxjVe6I LYYlj/f4s2h7mmVBEMQOWgzTiZATbX01q16+KEMK454oFqpFURWafzQdLcEhz4YR DccdBm0EYFSrTgtXwCpqGt8P9MCeOtmhNCeo4zeerT9an5CDJgphMFzA320D+15C sHozGVRjJnQDgwMO6drXjOyo1bpwzebEo2ALsY7bRD/tRo+WkVYycETqNKFXjoG1 1rO+gC/i2UNQnpQVk8FzNtX/Fu3FFFwFYV+1T/CfeexYIEEPWMmNrYYSts1BOv5g ncSGxilxIn4JUm3esj2m3HptlMbNrE1JtaIc0CmcUBS7msirjiSmySJ5YFEIzbi9 J9dTFNd+kiUtQsxni8n9V9tEGo5g4Rzqnc+6yEKpSvOuQgODOFQ= =Dbv+ -----END PGP SIGNATURE-----