-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Dec 2021 00:03:02 +0100 Source: zziplib Binary: zziplib-bin libzzip-0-13 libzzip-dev Architecture: source amd64 Version: 0.13.62-3.2~deb9u2 Distribution: stretch-security Urgency: high Maintainer: Scott Howard <showard@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: libzzip-0-13 - library providing read access on ZIP-archives - library libzzip-dev - library providing read access on ZIP-archives - development zziplib-bin - library providing read access on ZIP-archives - binaries Changes: zziplib (0.13.62-3.2~deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2020-18442 Because of mishandling a return value, an attacker might cause a denial of service due to an infinite loop. Checksums-Sha1: 8489eb9772768114fcf4d6d2d1b69a790f0e013e 2223 zziplib_0.13.62-3.2~deb9u2.dsc cf8b642abd9db618324a1b98cc71492a007cd687 685770 zziplib_0.13.62.orig.tar.bz2 8c97ae9dfc45e73b32f90d510d53fee0ed34cbe1 17044 zziplib_0.13.62-3.2~deb9u2.debian.tar.xz 10c1e413d5a2e95328a1c19ac2895eac68fdc910 5942 libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb aa4e9abbee23345e71468977b69125ea9e79c89e 56262 libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb 950a313cc8cc2b341cd645e28015d5d3530aeeae 112162 libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb 5489f4a6ff312229a4e4a95d5a95afa3fae6fb89 4358 zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb de3e6c6df83e8057a375118121a5ae0223837822 42304 zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb a00c35db021fae7b316562aaebc474e4c85c83ae 7750 zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo Checksums-Sha256: 2e658c35776469c6be9de6df20d96a547e91e6d7d3e9eefb4d68ca0456d74f38 2223 zziplib_0.13.62-3.2~deb9u2.dsc a1b8033f1a1fd6385f4820b01ee32d8eca818409235d22caf5119e0078c7525b 685770 zziplib_0.13.62.orig.tar.bz2 d24e6c96ac2fb5c17976b1eb8c9bcf7e2a5aba064037ace213eaf10aeae87792 17044 zziplib_0.13.62-3.2~deb9u2.debian.tar.xz 81067d50fab8422febc0ad2508bb31db6f619308edff7cdcf3a3d7ffb656180f 5942 libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb 7560609813891b5ac44fd133195e0e1f113bc8909883293bab24a457e0f49128 56262 libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb e7c9e8c123cc7ed6b434db34fa49ac976765b4d7dd194ef542ebca9cfb7251c6 112162 libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb b5ae6aff1aff734aa5c18a244beb14cf4d9bae82e8e6b035bc7d93ff59912496 4358 zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb 33d7b09e6a523689fcba3365dc4c7511fe6e0481eb430c2ec899f77119b78c42 42304 zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb 16ead250ba08234157e1dd9e452a51a755ac2d0ee7a11627dc17167cba0ea0cf 7750 zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo Files: 7c643b5aa60f8b3dda2fda4658bd2994 2223 libs optional zziplib_0.13.62-3.2~deb9u2.dsc 5fe874946390f939ee8f4abe9624b96c 685770 libs optional zziplib_0.13.62.orig.tar.bz2 4215a9f882e7e5940452aef349bd4538 17044 libs optional zziplib_0.13.62-3.2~deb9u2.debian.tar.xz 2a0114bb99bc5f035842a21e4929229d 5942 debug extra libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb 77104e1eda3b3629c41f682524e77864 56262 libs optional libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb 5416458a9cf6a3f66dfde731f240b23b 112162 libdevel optional libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb 1b456571b8114bbc11041078780f21b6 4358 debug extra zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb 6873fb63f7b165f671d3af1da6fff593 42304 utils optional zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb a97576bd1d8b6aaa05f376f07fc64edf 7750 libs optional zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmHKRAFfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR3zVD/9uGeGnlF1anRXid++GCpiSL86m5+Ma cyg8unIw7qRjND0N20gj8VBYznWrpGlZi/rg1lwN9Ammz1iKr5XzQrVmMY+pVVwx 84ARWVecRrMYOqL1tWxetxlao6/41+UiMzYf2eM1lE2+uMeRco+f2a0UuAVYISTb SzQ6TuZ2AhZeI5Qj6hwkFgtN8eFCV2JL/vt8HuwaFppuw8Wc1h8m9sVJA2cKHWRS uscacBLxBscGfXkH8gw4+POICcsXstQhnKrklwXpjnK792KVwLXpv3QcV/jHSMt5 NYg0W5ijNQAALuX2nAHjgVCP6ZFYk9oQ3iYkblUQOMCNHZRvG0N7bYWPXKOV+1kl M21BLIdGJTBXVoFs+oEdUzPomYt4AwFpYvKklT8/t65XFbPQwr4+wyl5K74I2ohs XgiRpObg0IcGZvHo581hMLdaws3sFAzNt8/qWnVPG8cg4lDnBg9I792Tt6V25/3L eyReB/Azxdxw+w8fdUAz5LLAO/gUBKj/FGvpE3+pVZQnoS7Bay3xx/nMQUiNkT9w GMkufDKBNs16UzTltTZbg2yndx2jwzULXOpPsd6Gc/iPQozR4dOo1KUlBX4l7OeX 6ONWrkA7ZXjV+d4dPfTMEfOrgf4K6HIimzOZOe5PM7qlkrMkcrDCQdG5tpaER7My AjJMbWL0QVur2A== =G3Ep -----END PGP SIGNATURE-----