-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 03 May 2023 12:48:03 +0200 Source: libfastjson Architecture: source Version: 1.2304.0-1 Distribution: unstable Urgency: medium Maintainer: Michael Biebl <biebl@debian.org> Changed-By: Michael Biebl <biebl@debian.org> Closes: 1035302 Changes: libfastjson (1.2304.0-1) unstable; urgency=medium . * New upstream version 1.2304.0 - Fixes integer overflow and out-of-bounds write via a large JSON file. This issue was originally found in the json-c library. (CVE-2020-12762, Closes: #1035302) * Bump Standards-Version to 4.6.2 Checksums-Sha1: aa3d0f987de7bc853e1ddbaa352d60c1509137f2 1957 libfastjson_1.2304.0-1.dsc 2ee6f4e133dfa003de1b4b03743a6eb91806668c 436726 libfastjson_1.2304.0.orig.tar.gz a63d804ff27e389427da206307df04cda46854f6 3572 libfastjson_1.2304.0-1.debian.tar.xz 39dd3649e8e0fb212fca7f6c311c73706673dbf5 5814 libfastjson_1.2304.0-1_source.buildinfo Checksums-Sha256: ee9fe28502e5def61406b784a43978b516a0094ab5f8e3b51078e56798640a66 1957 libfastjson_1.2304.0-1.dsc ef30d1e57a18ec770f90056aaac77300270c6203bbe476f4181cc83a2d5dc80c 436726 libfastjson_1.2304.0.orig.tar.gz 6d9672f371a4f58e8136ba6d9b8f061639062acf16d12feb182bceea297372b7 3572 libfastjson_1.2304.0-1.debian.tar.xz a5ef306e8d2739d56914bbc9f2481218ab5c15f117a430d59c44a720ca5627d6 5814 libfastjson_1.2304.0-1_source.buildinfo Files: 572459571fa5b857bb7a6b9e6c0adb97 1957 libs optional libfastjson_1.2304.0-1.dsc d949467b3ad51a258cf693c3c3f94112 436726 libs optional libfastjson_1.2304.0.orig.tar.gz 31bd9013a43a64585e2974a70ddc6db2 3572 libs optional libfastjson_1.2304.0-1.debian.tar.xz db7d8c48f97dd2c563e15a64ec0f07c8 5814 libs optional libfastjson_1.2304.0-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEECbOsLssWnJBDRcxUauHfDWCPItwFAmRSPC0ACgkQauHfDWCP ItyGUQ/+NuMhP1/Jk5h+sXebQJtyk1GtiUwPtnDrPQV0CXaZUqi0jZ27HP2YwR3S C867F+2Jx8vdaR9RxSlTY6afuWAyK39L0C+xWP82vim+f2QDH5wz7goVpd4tdeXZ Z6GaTMavfzosgSQH7QKB7b9IJ/dRCr+8hutszg5byPv3pohA4iQMtFS16Hb6uJ8B 4gxWn1X+b75tNmXlxbMnUF9e0UZmQJMmdjiKFm5sttilv50zWmgDZrMbUi9efVKS V90Ynx6FyAV7R5OdjAmMAmF3O1THZU2qFYQW5IXK7g2citth+5X06dm/stuFm1WK H8gsUlJQnTzwG9nVQsOVYJjB6AgxAu+cfGqZlrIx/Yz9q8lvl/OuDTu0gH4AQIJk JHElLl41nujuTjUj4xzIQRgquu7Y4K+ZPCcltxfTo1t6IhQAi7JrBB0zZ07yaifM K67ToQBHu2p1K3SydxWQKFN54Rwh+whjbfYbpSoZFuwBLFbg4CrIi78+io+GC+A9 MGFn319TnBZTQUmY51D7W0D9uqQVew6jYdNJ2SGTM2rZpMXsIwObuhKY740cv087 ZZmiFH6/RtVbdUVqYBC0IglaWjrBpPz4CAe7JGyq9B0QWSN95Z/HgVdjJ4saw0kq 2Vsf5FICdpGTA2iUtsFIid0Cn4oyi1ASNKdwgE9/4MyyLGLveMA= =Vp9R -----END PGP SIGNATURE-----