-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 08 May 2014 16:30:10 +0200 Source: libxfont Binary: libxfont1 libxfont1-udeb libxfont1-dbg libxfont-dev Architecture: source amd64 Version: 1:1.4.5-4 Distribution: wheezy-security Urgency: high Maintainer: Debian X Strike Force <debian-x@lists.debian.org> Changed-By: Julien Cristau <jcristau@debian.org> Description: libxfont-dev - X11 font rasterisation library (development headers) libxfont1 - X11 font rasterisation library libxfont1-dbg - X11 font rasterisation library (debug package) libxfont1-udeb - X11 font rasterisation library (udeb) Changes: libxfont (1:1.4.5-4) wheezy-security; urgency=high . * CVE-2014-0209: integer overflow of allocations in font metadata * CVE-2014-0210: unvalidated length fields when parsing xfs protocol replies * CVE-2014-0211: integer overflows calculating memory needs for xfs replies Checksums-Sha1: ab4c13735178e199c6bb05120c812eb4deccc21a 2223 libxfont_1.4.5-4.dsc 3027765c1a1620ee63d11c7948de47abd716db1b 17938 libxfont_1.4.5-4.diff.gz 99198f329dccbe515cb2cde9519b901e9252586c 164346 libxfont1_1.4.5-4_amd64.deb 7b535026a59c557a0e4ebb1b2c025458fd67ab45 111512 libxfont1-udeb_1.4.5-4_amd64.udeb 145582d1a6984e38a9b445149c874b598ef2a9a7 331592 libxfont1-dbg_1.4.5-4_amd64.deb 0f9f178ca41cb4811e3b36f07840d156a1c93b6a 216442 libxfont-dev_1.4.5-4_amd64.deb Checksums-Sha256: 98af6f33d3b0cd01d88467d94783e205cecc0a0403c856f03b2f24bae67b7f2b 2223 libxfont_1.4.5-4.dsc ab0af631dd65279dd666a9254ac3f36f1d6cca3f92c42e824e90953f823e2c4a 17938 libxfont_1.4.5-4.diff.gz 5fb5b28656b623d6ca7bce4c30d7143fb6ff79c22680eba1494a847dca72296e 164346 libxfont1_1.4.5-4_amd64.deb 598f4bbb3486b299bb3d688e83ec6d2394b067c33d9a881aa973afbf7de2f37c 111512 libxfont1-udeb_1.4.5-4_amd64.udeb 0c062a29083879903ebb8e5e6441aebbfd2958e477c00829443699a52d7354b1 331592 libxfont1-dbg_1.4.5-4_amd64.deb 046fe30280e0853e21f8d2ec29ec7b99533899cedd02d18ee0d31573ef0f1a91 216442 libxfont-dev_1.4.5-4_amd64.deb Files: 0cac97975f6713a1c9642ebd93a377b9 2223 x11 optional libxfont_1.4.5-4.dsc 5130838f61f0a67d48a337b365772fc8 17938 x11 optional libxfont_1.4.5-4.diff.gz a9846245d558daf67fc1728281622c2c 164346 libs optional libxfont1_1.4.5-4_amd64.deb 0daddb3281a6ba6d2104f3b120ee060d 111512 debian-installer optional libxfont1-udeb_1.4.5-4_amd64.udeb 70ee755c5da3e4d019bbdfe47611f8e3 331592 debug extra libxfont1-dbg_1.4.5-4_amd64.deb b6629fe99e1892bc0ee39b9f447e3066 216442 libdevel optional libxfont-dev_1.4.5-4_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJTa5hTAAoJEDEBgAUJBeQMPFAP/2tH1syvz5ob5IA2jV9YM2MM 79mLWPNQVl7ssFpAahbnmP3Z2dINWgd6D2KJgOeA0Y0yahxU+rZ2e/cFAaqy2Ce4 /wvX/0aueRluw+DGXJzV45mWy+0RwVxkf5KEHiLJ2oynJxoUYFA4Tgy34kjf7t/p ZIvaFkS/cuok0o8dYZO1uGFy8pD+W/MTBwJ7hKg9koV8ALH1/Mc2tAM4BDGHNaGq MgvPgq/WGk/qFUKG1kShFO/8eQonQ+A9jzGzKh5Nv90Efd9v/8rWbAV/eXKUsZwv d8Qnwy6EgICHVryCZRfFNqR0uLDEGuAQMWAu5iCCctyKx6kO4gVCBBG2uNGcw20l jbIsPB3d8foLwjmr04sB1YiuXLwF7vOC6RV/nKx+oPTz3ZyX+1NDN1P5YVc3skHd uC0rEU1w+9Ht4ZCrk1g/82IiGs5LlMF0EpzVvnebI0mq2SjVJRQHW9VvIzRJa+Wv pildqA/fghCPQp4r1zi37FheWfxRmZUQx3n5kUpif8MJ36STbtWSRTX2HhRRTUVH jNyUgq307MQ/w6WsM5R68ccqVfzZnSZS/tnCyL7Q6h9hGAVofivGRGeVB3ZNswcm H0okwZxcaGhHCFaMMMq3sGFV04b6XssduyixfWrRNIw4C5K1NI2+o95vuOGhL65C Ithpp7uUlaht/My7DLLL =i0SW -----END PGP SIGNATURE-----