-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 23 Nov 2023 16:06:18 +0800 Source: tiff Architecture: source Version: 4.5.0-6+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Aron Xu <aron@debian.org> Changes: tiff (4.5.0-6+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix a memory leak in tiffcrop (CVE-2023-3576) * Fix buffer overflows in tiffcp and raw2tiff (CVE-2023-40745, CVE-2023-41175) Checksums-Sha1: ee6d53e7ec41f03633b4aff12ef09fccb8e42827 1942 tiff_4.5.0-6+deb12u1.dsc 72f4906f52d4fe2b852f820d163f9cd54a58b27b 2050377 tiff_4.5.0.orig.tar.bz2 dc3528ffcdc78999f029b3a7b12efda46aeebfa9 28012 tiff_4.5.0-6+deb12u1.debian.tar.xz 2cee94fb2d486fc9753e79a10506331cdd35c445 9263 tiff_4.5.0-6+deb12u1_source.buildinfo Checksums-Sha256: 3c184ea95bdd959f2a8d9da7a0cc7e73b5afb3f906ff086b05c9e4f953a4ded1 1942 tiff_4.5.0-6+deb12u1.dsc 638f43d7dea33948d5dee7f39572fc0194d9cc3c74195de9dd26a4388a1f880a 2050377 tiff_4.5.0.orig.tar.bz2 d70ba897e15f135b7ed8cbc823490ca522c91ceff5e6a4c4274fc348219dcde0 28012 tiff_4.5.0-6+deb12u1.debian.tar.xz c70988eb078942e320160c19ee0b159b03cc1c3ca98c432fe2c3387c682c231f 9263 tiff_4.5.0-6+deb12u1_source.buildinfo Files: bb7334e397e84b6a028dc8cfcc5ca83d 1942 libs optional tiff_4.5.0-6+deb12u1.dsc ff9b9cf36f05996ad016707be8865709 2050377 libs optional tiff_4.5.0.orig.tar.bz2 c7d34bdbaf2f9ae943e750d95977a3d5 28012 libs optional tiff_4.5.0-6+deb12u1.debian.tar.xz 9a61324c2a8be1fbaf7ddd44b64698fa 9263 libs optional tiff_4.5.0-6+deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQEzBAEBCAAdFiEEhhz+aYQl/Bp4OTA7O1LKKgqv2VQFAmVfECAACgkQO1LKKgqv 2VSkLQf+PwfaRjjYYu9pAXlLXStNK/xGjDjWPo8cUlaptvlEf0XQPR+Xd5uIWt7Q TzeAyVL9QInHp7sbEydbOvVjp4ZtSM/bGF2hYNaMoaBu4La5Lw3cwYJIz9r7kt9M yof4qqoozYSCeGIFEN/wKKWqFGhBdBiFolcj9FVZkjrtIAzToQN8RqK0erVCeBLy q9SQ2aGK0+k1dq5c4Pn7KzmS2/QtFBDrYkxoQr5cWlaVe1s18KsgLxpg56KTQy3p SPhDz9PVHwP0FkQKuVyfsERoei4cobaiVZxjyf0y0CmzUVXX0/CB3n9PBVWVYVnP AuVIviivFd61g6BRKWHXrIKtzc633w== =0qz7 -----END PGP SIGNATURE-----