-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 18 Nov 2023 16:59:10 +0100 Source: gimp Architecture: source Version: 2.10.34-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian GNOME Maintainers <pkg-gnome-maintainers@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 1055984 Changes: gimp (2.10.34-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * plug-ins: Fix vulnerabilities in file-psp (CVE-2023-44443, CVE-2023-44444) (Closes: #1055984) * plug-ins: Fix vulnerability in file-psd (CVE-2023-44442) (Closes: #1055984) * plug-ins: Fix DDS vulnerability (ZDI-CAN-22093) (CVE-2023-44441) (Closes: #1055984) * plug-ins: Fix DDS import regression * plug-ins: Additional fixes for DDS Import Checksums-Sha1: 1b2dd253a13807c8071d99c27747c8d7a1b42fd2 3689 gimp_2.10.34-1+deb12u1.dsc 34c0fc084a0c584839bf080587fb8f79ae4ef293 31405329 gimp_2.10.34.orig.tar.bz2 bae0791672a60f44bad4c80dca242a3dbb645df3 60808 gimp_2.10.34-1+deb12u1.debian.tar.xz b5fa23f0025084386574a614d4bf1ccbceb9ffbe 7236 gimp_2.10.34-1+deb12u1_source.buildinfo Checksums-Sha256: 2e046b68439eb83ab3f13742b38cc592b2a5774664be7ed5bf516b1438bb6b9b 3689 gimp_2.10.34-1+deb12u1.dsc 84004642d351b398a4293cd7fd3592044a944f05bb52850ee6068f247c657aa3 31405329 gimp_2.10.34.orig.tar.bz2 c66f8083ed9275f247dfe9e588e1d9fff622dba0b6cbf0b09690fb6906dccbf6 60808 gimp_2.10.34-1+deb12u1.debian.tar.xz a3dba854b7d49db6a25eeea8d33d1dafdae93aaa6467dff7c460ebe76bdcb38a 7236 gimp_2.10.34-1+deb12u1_source.buildinfo Files: 7163acd5b4eb775824b87099741865ad 3689 graphics optional gimp_2.10.34-1+deb12u1.dsc 0dae3a42d261621d62a336ef2aee052a 31405329 graphics optional gimp_2.10.34.orig.tar.bz2 8a99879abbf0e59fff0fbcecbfcdcb88 60808 graphics optional gimp_2.10.34-1+deb12u1.debian.tar.xz 3d4065067af6c2f5ddfae8d5afc63e19 7236 graphics optional gimp_2.10.34-1+deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmVY365fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89ExokP/iBN5Q909tU79vOd8Neyq5v2i/0btvIq LgD46MUOHN3k/GgQuiKuD3mkj9dWJ7VWiA5U5r+tStoE8tKg4Tnl0hP1ZMcz5PgQ SPTuE4glRg0uDWkhWs4UmrV1aea643Kw9a3DL94MUoqpiIQSXadHDstRNCOooVzz 8B+nlKR6hBcgH+yWvm1Y7CI2pI3pMHDjKiSl7iHCi2S1ZRmgLcVIUZzi9VrjotRw ioSqqgOb/mL+GlDxF930DnTvIe4/MchoElFeclaRYsxPm94QTw3tY6ygdaLbHn67 oOvFl70kFAqxmoxlGIZqL+mQhlAAW9RchPLtMXHM6/+qwUzvz/jYDmLEghxUGb89 IbegEJdYeWHtBs8h8KUs0F5mzxeURnnXJfDNXYm0ukLArzOfr9DnSDPyuyWEqljH IJkkDehmzVYO+oEkihHchc383BfK2BqjbSgTbR3uwwGEedMmbAdpvfVdcHb48YN7 t3VzMqUonNHZWFCL5bYmZM9agYCzFgQhs4BZskrVPwjoEUU4t/Wuv3IprIdgGttf fyLL05lC6EaMg6J+9nQ57wQFhFAxtQ2qeDnsE0+56aWtF0aRRfd3KmS7/C5F6ISx arqrOP0xDfHsegxcogxP4DwaLeoOqGc4t3vIzx51fD7ez2QuA7mTKHzjX1wM7zMi q+kNkASO8+XL =JX/f -----END PGP SIGNATURE-----