-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 27 Dec 2021 22:03:02 +0100 Source: libzip Binary: libzip-dev libzip4 zipcmp zipmerge ziptool Architecture: source amd64 Version: 1.1.2-1.1+deb9u1 Distribution: stretch-security Urgency: medium Maintainer: Fathi Boudra <fabo@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: libzip-dev - library for reading, creating, and modifying zip archives (develo libzip4 - library for reading, creating, and modifying zip archives (runtim zipcmp - compare contents of zip archives zipmerge - merge zip archives ziptool - modify zip archives Changes: libzip (1.1.2-1.1+deb9u1) stretch-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2017-14107 Crafted ZIP archives could allow remote attackers to cause denial of service due to memorey allocation failure by mishandling EICD records. Checksums-Sha1: e21688daca55c7e434e5a8458f65c98bcb9e4817 2233 libzip_1.1.2-1.1+deb9u1.dsc 58acfd01422e38a95539481cc51e10e91c6a03a7 671193 libzip_1.1.2.orig.tar.gz 611a99cb89eecc0acfe90d925fbe8d1d6b8c5208 5492 libzip_1.1.2-1.1+deb9u1.debian.tar.xz 153e0eeccea16e1024b9292050b671ad06826987 116682 libzip-dev_1.1.2-1.1+deb9u1_amd64.deb 8184c7583b0e24bab8d8d770a69f3db836997089 122186 libzip4-dbgsym_1.1.2-1.1+deb9u1_amd64.deb fee75f761abea1a22331945b3ad82be905c63093 40460 libzip4_1.1.2-1.1+deb9u1_amd64.deb 5f8dc9a6ce48c40dcaab76bb71ea3e20b1ecf9db 8302 libzip_1.1.2-1.1+deb9u1_amd64.buildinfo cb54b751dae7d5186bbf64bbf1c70e4189179aab 15418 zipcmp-dbgsym_1.1.2-1.1+deb9u1_amd64.deb d1e761a7bf8a2e67289e47d88386e0f85da97444 13150 zipcmp_1.1.2-1.1+deb9u1_amd64.deb 1e180077f1a449bb9fac9d15b550aeece9b41ad1 8150 zipmerge-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 75e67c3dadc591d80f89c0ac7b95bcebafe439c2 10692 zipmerge_1.1.2-1.1+deb9u1_amd64.deb 7bc2ee80282ddf2cd15f02e6cf63bbb29d8fa10e 29002 ziptool-dbgsym_1.1.2-1.1+deb9u1_amd64.deb eed7578a4d8ffcbc35f9b624a54facc3585d4c67 20710 ziptool_1.1.2-1.1+deb9u1_amd64.deb Checksums-Sha256: 3dabc678a9c4e509cf9980d6c19b5d9e7e059e2d3880d3829e18bc70d86a349c 2233 libzip_1.1.2-1.1+deb9u1.dsc 59ac7c09b0aa9aa7e21849c236d0a66a97aa6d442d78335c2fdfe0ee16366221 671193 libzip_1.1.2.orig.tar.gz 7724498d42cd4587671ed68d2bcfcb8cf350ed7aa125a1235e769b9f6e57dbdf 5492 libzip_1.1.2-1.1+deb9u1.debian.tar.xz c6a4de8d3339c685365b0a365b21483ffa8005f340bf941f90c2ec488f689b08 116682 libzip-dev_1.1.2-1.1+deb9u1_amd64.deb 5db5da77bf5cd032c9849959cc7da9c86c746a662fd1ca73a3bd6bf1c7775f6b 122186 libzip4-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 27806d6eb61f2f9c0c934dd7ba0ed735b40ead923215f73f3ece12efd7c19a48 40460 libzip4_1.1.2-1.1+deb9u1_amd64.deb e6612932f6096edfbaf8dbb6ed2270b9eda0f835cf515fdfc2f5bcd5c198378b 8302 libzip_1.1.2-1.1+deb9u1_amd64.buildinfo 1fdfb54f6bebc26c764e1faaefe202b9a14e3ffa92180a401366754cd23bb8dd 15418 zipcmp-dbgsym_1.1.2-1.1+deb9u1_amd64.deb e5be097d26b6a461e5a2a4d430b39b56109d84c24c97fdebf0aad8a90e5efc3a 13150 zipcmp_1.1.2-1.1+deb9u1_amd64.deb 0037434c8224625b8c0a561cf0a5faa192be41c29ee908a6c630a7ce6c6449e2 8150 zipmerge-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 956a5bcd0fd6b8c4e40737b43bd9846f77922951be254ac59270a893ddbba9aa 10692 zipmerge_1.1.2-1.1+deb9u1_amd64.deb 99d29ca2661ebf97642d8846f9002c5d045047011fd46e09d8512fd2f8e764ec 29002 ziptool-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 62054105f9a992d5f994851a2f192488fc2569966dcddab0a30971efcd97b4a4 20710 ziptool_1.1.2-1.1+deb9u1_amd64.deb Files: 58a9fa4184c1adf7290d3f5d6cc9cb2e 2233 libs optional libzip_1.1.2-1.1+deb9u1.dsc 0820a1ae5733518f5d6e289cb642c08e 671193 libs optional libzip_1.1.2.orig.tar.gz 4c4217cebee2bd176ef35c36e4af5361 5492 libs optional libzip_1.1.2-1.1+deb9u1.debian.tar.xz 5c2724423ee40a1ab0fc0174ae71798d 116682 libdevel optional libzip-dev_1.1.2-1.1+deb9u1_amd64.deb 7281af1c62345156edc3588b0ba67c1f 122186 debug extra libzip4-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 9ff85cddeaed4d87a3142a889e32c6bf 40460 libs optional libzip4_1.1.2-1.1+deb9u1_amd64.deb c18118925909e1c2fa6e41af661b14cd 8302 libs optional libzip_1.1.2-1.1+deb9u1_amd64.buildinfo e90a14f238a85fae336794be99284025 15418 debug extra zipcmp-dbgsym_1.1.2-1.1+deb9u1_amd64.deb 1aadfce4b7d43a42c5f41c1d0c5d5cdb 13150 utils optional zipcmp_1.1.2-1.1+deb9u1_amd64.deb a206f1c53abe5ea1c8754f7600362163 8150 debug extra zipmerge-dbgsym_1.1.2-1.1+deb9u1_amd64.deb ccb86f03b460c323609672ba6674f1be 10692 utils optional zipmerge_1.1.2-1.1+deb9u1_amd64.deb 1ddc13e17ea87f0cd23e7130ba442acd 29002 debug extra ziptool-dbgsym_1.1.2-1.1+deb9u1_amd64.deb daac009821077c8846884a569e8675ab 20710 utils optional ziptool_1.1.2-1.1+deb9u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmHKQlVfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR6pID/4goT5tQq8tA1+UFjZ053S7bjPzXS5F VHA5PJbv0axubBGgFDko2eGEm8AsOkrixJs0xRit+OZ73qTG4Z0NPWu1KnotoGAf zjjwhW9nv2d4ZmBgx5iMVoSQQohBq5WUt2h/6c9zVeh9pWCsUGubtQixrsmBWn6a N84HjcQE9SHPEAKnsxlDbsKc/ZaFvMKNYxHZd29Zl6HEUpQdsWROigDsHFxze0kP HrK+nXzok0+tgr+vIqtiVLk7nctD6BxLDzqE6smx2svj7mI4sezEseixWtEIKtsJ 6MX1CtFpJyehLo+JNqUY8A1+622yxYI7ywyr10HrbsQcY6b+P4c0bFXPTeIe9y7y JbPv2E7yg5/NCDUjuaRiwQKZE7LFhdhATNQf9Gyzmi83xMTvhNYK4uZDGjyUgiHm Bj15XX3kYZn1Y+45Gh/pGgg8lORBmHJzpVMqEM/bRQ7Ma6peIAZtzuCbNqsPgzR2 YJ52REDdfBOkLobd5zvJtaadEWPRC1tJu+eaITS7XgPzbbZl/+05nh+9DSiJZk3G 2drDpPEYnKw4Gei6n25H/qU000dUq0LEGsjyiyRaVg6qnznqDDqSfVlMT1SIevEb woz+b5sXE/7zSu9ZFVPNm2J+rxp8CH6Am0HLnR77elvyVAWGIfg+D69wlI+c3gG0 taDHN0me2syrow== =YIZF -----END PGP SIGNATURE-----