-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Nov 2023 13:03:02 +0100 Source: libde265 Architecture: source Version: 1.0.11-1+deb12u1 Distribution: bookworm Urgency: medium Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Closes: 1033257 1056187 Changes: libde265 (1.0.11-1+deb12u1) bookworm; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2023-27102 (Closes: #1033257) fix segmentation violation in the function decoder_context::process_slice_segment_header * CVE-2023-27103 fix heap buffer overflow in the function derive_collocated_motion_vectors * CVE-2023-43887 fix buffer over-read in pic_parameter_set::dump * CVE-2023-47471 (Closes: #1056187) fix buffer overflow in the slice_segment_header function Checksums-Sha1: d382e3ce62a808bc2c773c367760a737fa49d0ac 2381 libde265_1.0.11-1+deb12u1.dsc 107e0bc48b2748adfd535e15186d0f84a6e152fe 845996 libde265_1.0.11.orig.tar.gz a4c30c24f78102e18488913df8442c459ba0cb7d 15512 libde265_1.0.11-1+deb12u1.debian.tar.xz 4ce03a6388d5195b3ebf89f9821258549d430686 12670 libde265_1.0.11-1+deb12u1_amd64.buildinfo Checksums-Sha256: 6c8d2332e81b73be23fba2ce6cae7c71dbbd8974f006f26f4ab16ce8dd349cb1 2381 libde265_1.0.11-1+deb12u1.dsc 2f8f12cabbdb15e53532b7c1eb964d4e15d444db1be802505e6ac97a25035bab 845996 libde265_1.0.11.orig.tar.gz 0c33577ab6a790c221dea6c6397365db46c214394127e718baaae6b3c0fdece0 15512 libde265_1.0.11-1+deb12u1.debian.tar.xz ecd392aa7492a6f143174ab6567c0dc01c93bc2efbc63a3fbb389e24095a29e9 12670 libde265_1.0.11-1+deb12u1_amd64.buildinfo Files: eeb81a6583e55014e0147462bc3d4cca 2381 libs optional libde265_1.0.11-1+deb12u1.dsc 2b07416559819212aed2fd75f74fd393 845996 libs optional libde265_1.0.11.orig.tar.gz 074f80f8a400c3ba805695145e99f9db 15512 libs optional libde265_1.0.11-1+deb12u1.debian.tar.xz c585c90e35109473d0d9a6a10f6644ad 12670 libs optional libde265_1.0.11-1+deb12u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmVrthhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR2HZD/9XrBGvwSzpKXcqPKCJAeEu7WdEjDTQ QQ0gAUeMs4mV0ZjTBdmYNS0old4aCSw4Id2q70a4zNt+ZOBZcw4RuYn2JPc0TThi kR6BYiWwMW+xecOtG4NwaZz1mtJjNQqNCokmbbaw9qcpgySVhVJ/BE0ew4BLWfws qASHxjFclFHmy8YnuJ3M92S/0byreVpsqZz59hAlyOwwfeAGnd3chvP78g6u2pBR z3xCDmKJSRx/4NatJG5VbXFPrE17S9Z1XJpBSrwXEJUjQtRmPYhKwtPkLlocaJo2 ttnP5FrzlbOicYLPAJW0Ct34+q/3ZadqkKtuwnioM0EZq+LjmeZxdvE2Fa+llIOY Ex74rqIzF31Wta7yidcUoV8P5Kl48PLuYwxe1HaoDu/asfCbnAKnFooPpnSZSin8 au8/2VvoEIrz+qdTEHG3hBPa01Kt5oigh5dSeg3WNW3a/pISAaxprMNqTolsc87U Hn3yIlIjFuoylUefau947mANigzmd4LwyqpCOb742bz2nf/fKqE5dSfeNcKAX1q2 mUTpEwT/ya6chow//kbQELF3rOXeySyIFNkCZsQ7v9k7ud0SvUM2mFMkeOgFIvFu U+uOSmat+h0J5H7UjqNyqR8wBehX53iJw7D/qNSHht43CF0TwiytTo0e1sjx7EmA RwKv9BwEmkdLNQ== =cwYr -----END PGP SIGNATURE-----