-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 15 May 2013 18:55:18 +0200 Source: libxxf86dga Binary: libxxf86dga1 libxxf86dga1-dbg libxxf86dga-dev Architecture: source amd64 Version: 2:1.1.3-2+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Debian X Strike Force <debian-x@lists.debian.org> Changed-By: Julien Cristau <jcristau@debian.org> Description: libxxf86dga-dev - X11 Direct Graphics Access extension library (development headers libxxf86dga1 - X11 Direct Graphics Access extension library libxxf86dga1-dbg - X11 Direct Graphics Access extension library (debug package) Changes: libxxf86dga (2:1.1.3-2+deb7u1) wheezy-security; urgency=high . * integer overflows calculating memory needs for replies [CVE-2013-1991] * buffer overflows due to not validating length or offset values in replies [CVE-2013-2000] Checksums-Sha1: af7f808222fb4fac93403c709d965b6d7ba2e923 2146 libxxf86dga_1.1.3-2+deb7u1.dsc ce8a4859f317fcf74877731667330843c9872289 351699 libxxf86dga_1.1.3.orig.tar.gz 5135979072d0eb5b212bc8b8d983f474a5193cf6 16532 libxxf86dga_1.1.3-2+deb7u1.diff.gz 5d19ad7188dc6778b6fdec47144871f99513890d 22876 libxxf86dga1_1.1.3-2+deb7u1_amd64.deb 0e0e8839bcff5283bd48fa91218a3436c7026ea4 59562 libxxf86dga1-dbg_1.1.3-2+deb7u1_amd64.deb ed6a8242356435a6d664a5394eb09bdf96f0eda7 27820 libxxf86dga-dev_1.1.3-2+deb7u1_amd64.deb Checksums-Sha256: ac5981873bb851aa8745134cc8f3165af36a035f81b96e53949c800e227c2816 2146 libxxf86dga_1.1.3-2+deb7u1.dsc 25d0f161905277c5eb3aba21226d63fd5ac6c22e3c40f99f4b3e380a7a08e7ce 351699 libxxf86dga_1.1.3.orig.tar.gz 9aa7a202b7d53870f6334dc38a21400a9e173482855d4f7117a4711f74b00eef 16532 libxxf86dga_1.1.3-2+deb7u1.diff.gz daf75cd654a904f2863e3673e89f2fdf7ba5eb603aaf8f0f555390cf3cf514de 22876 libxxf86dga1_1.1.3-2+deb7u1_amd64.deb 0aba4dc6f4cf7a5f89dac8bfba0ab0e52782df81fadc6b62a64e6ca0e5193543 59562 libxxf86dga1-dbg_1.1.3-2+deb7u1_amd64.deb 089321f3c53161b603e70baf9185f8afd168467f7fb01c1320e7c6b34cdc5c9c 27820 libxxf86dga-dev_1.1.3-2+deb7u1_amd64.deb Files: e4920be33f25ce4fc6a09df12182b02e 2146 x11 optional libxxf86dga_1.1.3-2+deb7u1.dsc 3d58873171c7765956ce257e6a7e4865 351699 x11 optional libxxf86dga_1.1.3.orig.tar.gz 6bd9c459bf4267cb0afb4aae04867273 16532 x11 optional libxxf86dga_1.1.3-2+deb7u1.diff.gz 9d603cc2cab1d26ba937bbb3d900abe2 22876 libs optional libxxf86dga1_1.1.3-2+deb7u1_amd64.deb dd264fdd7eed4dc9c134f52253fbc56a 59562 debug extra libxxf86dga1-dbg_1.1.3-2+deb7u1_amd64.deb 2abb38df8b8f2b6e0ce1fe0a4d14a125 27820 libdevel optional libxxf86dga-dev_1.1.3-2+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBCAAGBQJRk8DJAAoJEDEBgAUJBeQMHZ4P/RwRLuodqZVPrWAL1oKRkK7c sCnb8/ggXFopF+HAB/fgHGMzymnIWLu1Ce2BmNpJrwdNIBubFG3d0654jCv1UZnc bg1JfsOrwZBNfbE6YwWblaJdeG8l3/rBKQNXQrRuHu2kEV/Q12tvI8LGki6Vk8lU cjnwkixfy9nWNjCH+SPMkEcbEV7zSDR4HeG1u9PoPPRKlurroF8vPHdUjhWVAL7p LhwIjW6UbJvXC9K2Mu7KRNWDNh620La2sv8UjN5CuUdHKsRFgaOPm+8kriuEJFhE Bk3jgat44XcKn10THxxf9G+wnkupTm1+8/cFxCrHkrcpeXzXeHXE8lozcktdUpBI wlRn+lTKe0+KjsxQbcceor32BNEmTe3SIKOP1N9l2IvHXp+i65484kfMHGGdHhBf omzUFrXEiPeRAnTfOS3BGGcrhbzBaacC6UitCDYw2yflCCwl8Y7vh24SqMxf2mjb f1fKVQdE8ewvMlf/Eliclyo3t8xuJGA93YeMkwZ+A77CCvvT0lXfOUX6hCwSjipe hlVJHyXoKbeqHgZ1H4KW3WPOtyiyMaKm3hvi6804XHIrcf1kKf7qkDB09O89hJvP dRhdBiCAON0pGDEyXqCdCTHyCWuFLHK2IzDkv5s3YFy4nyBcSq6D8y+STqVL+CfD qjrwAnh0369KI0Pu/W2D =oW8c -----END PGP SIGNATURE-----