-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 27 May 2022 11:56:13 +0200 Source: pillow Architecture: source Version: 9.1.1-1 Distribution: unstable Urgency: medium Maintainer: Matthias Klose <doko@debian.org> Changed-By: Matthias Klose <doko@debian.org> Changes: pillow (9.1.1-1) unstable; urgency=medium . * New upstream version. - CVE-2022-30595: When reading past the end of a TGA scan line, reduce bytes left. - Do not open images with zero or negative height (#6269). Checksums-Sha1: 505241b90e5274e10c5ea1afd6b2e27607954ef9 2285 pillow_9.1.1-1.dsc a63b08b792c1e7646dbf97eb32da11c0666587c6 40374096 pillow_9.1.1.orig.tar.xz 9e5f2bacd376d50682b6bdedae1ca15641451ac0 16192 pillow_9.1.1-1.debian.tar.xz 81bd13ba2f32b8bc4c798a401f3ae5ec7c947b38 10591 pillow_9.1.1-1_source.buildinfo Checksums-Sha256: d9d41a3d97e1d49c1503e057af49b8125b073d43df2da59930610c4e4da37830 2285 pillow_9.1.1-1.dsc cf7c71a55628d151de8025a43f434b6ce9eb5bc92ad100c07c953b7835fcd972 40374096 pillow_9.1.1.orig.tar.xz 0ce9c8bf7cd1b6c95d1e72e5fd0ebbbcc9da6b86fd0c0ec403e12fb4d21bb6a3 16192 pillow_9.1.1-1.debian.tar.xz 0b2d20e11bb05099164ad37cfdbeb4e83499ffafc0ac3c11d159c403f25a02c0 10591 pillow_9.1.1-1_source.buildinfo Files: 52a19f9071f46785938481e6151b0f56 2285 python optional pillow_9.1.1-1.dsc de3d8a662eee3ab743a5a6c5dfb802d4 40374096 python optional pillow_9.1.1.orig.tar.xz 583a6d6c4baf0096759272ccbf91e63b 16192 python optional pillow_9.1.1-1.debian.tar.xz fa6e15220aa26c71708fb46d1434f0f4 10591 python optional pillow_9.1.1-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJEBAEBCAAuFiEE1WVxuIqLuvFAv2PWvX6qYHePpvUFAmKQoNgQHGRva29AZGVi aWFuLm9yZwAKCRC9fqpgd4+m9WdDD/9sjd0zLgWYpTz7odsZTUZfCPgK3lBbevNn SwkuEf8vIyAIJmmLuUATfI0GQQ3yTQetyB23DMedl2Cho/tXlKT7O4/zCaDRKqv6 9+liSokky8sKebVjxpEWWknVOth1kUH16MCo5iK7v507CtuQpo97oDNJcmUrQQo0 AZunyk1+UsFA2vN3tOFmxmNI6VBs54G64QmxJhTOvqQWN65M9yYoP7vSjP44q6Pw ICOhjjy5LUm7O5iEU0pkYXaOdV3xHqzCCHhwYy8qocf/EqOAv5/UXi/mKrqvfeIl el8mIsZ4Hu4ljVVNvqZSTAaKFh5HV1wLNqRdu2uA4w3Iy5ee/9liu3AMyxyLHF1g bbpCluoZVbQndICoLfm8IZmwLKQL6ptuX+9d21Wa1/zMPNs5wLRQiddUzjZxkkwJ Zeq+z8FiLk+/en85T2etPSkA8QdGa1/y60aDhgjdjtfK3AFuxYx7EhVsG3BvY8U9 1luAIbbuCAGKFpdzjSinv4RqCMEA9MNb9v07SmykK3tV+dp/96V6uwLy2NUEGgVd N7o6+HtUfr9aok5gitLykErIR4ujGE7TuClf3Z1OfqsrDkKBiZbVV4VINDz6MNM5 MbRCRnr2mixXhXqkNdcuJFJfr7GX3mJS06UFky/97hVc2+G/KbcLXAXizBuPYN5J G/9i7HrCUg== =jfPT -----END PGP SIGNATURE-----