-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 29 Dec 2023 23:03:02 +0100 Source: libde265 Architecture: source Version: 1.0.11-1+deb12u2 Distribution: bookworm Urgency: medium Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Closes: 1059275 Changes: libde265 (1.0.11-1+deb12u2) bookworm; urgency=medium . * Non-maintainer upload by the LTS Team. (Closes: #1059275) * CVE-2023-49465 heap-buffer-overflow in derive_spatial_luma_vector_prediction() * CVE-2023-49467 heap-buffer-overflow in derive_combined_bipredictive_merging_candidates() * CVE-2023-49468 global buffer overflow in read_coding_unit() Checksums-Sha1: 685591c69e234f8fb62150b5488b4391b1730a79 2381 libde265_1.0.11-1+deb12u2.dsc 551f431632fc6dc4f8e79c46485b0d8268030a2a 16280 libde265_1.0.11-1+deb12u2.debian.tar.xz bee082664f85cba0fe957680d68c514d0e579a35 9751 libde265_1.0.11-1+deb12u2_source.buildinfo Checksums-Sha256: 3f42b562a89db54867cbc7f101b73fc581ac9a0b397637c61d9f41e8bbf13332 2381 libde265_1.0.11-1+deb12u2.dsc 81de2919da09690f2fb80383fcc68cda397bfed878a010061627f7794e278f4b 16280 libde265_1.0.11-1+deb12u2.debian.tar.xz 40e09b3d3d4714e36790aeb25c743cb2f6ace88d07c6b35af3540e2c343595d8 9751 libde265_1.0.11-1+deb12u2_source.buildinfo Files: 0e978a495892a4e2a82b6ed9c8d97ecb 2381 libs optional libde265_1.0.11-1+deb12u2.dsc fca722298437dc95908a0d599b7da414 16280 libs optional libde265_1.0.11-1+deb12u2.debian.tar.xz da5ed2327a984a272c5c42300ff70dfe 9751 libs optional libde265_1.0.11-1+deb12u2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmWPVF9fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYRx5FD/4iSTvGvzXUtsaalAOhPJ2S/47mlxDw IEJQvxPzvPm9qsVi1hqw66Rk1KXZS3r3wOxRzfoHoTYKZwLiCM5YLi5wge1C71Kh PUNJ6wqJ1kk3exZumD/6wMbqRaMCsYd3ouLIeRPk/QEaXRHAz2pXke4RFnF1ZZBr 8kBzRKzvoIsFZupN2sCx8jGfoIaEBAPWuvamDCgksrBKNHXB9lgIA6mdKEcifCjb ArKhkTM0S8W3XSgRgbM+fyZCw88Vn8tOcXKALn/RitnbH2ZxwFLw5ItCxAnOOrqj Z2/c/hDaUnPm5qJ8SIH/PAhZ+JTXs+b6gi88mjpHGNrG8N1NO1TF8RzP3WxTnCzF 4IDb7S+EDqjk/FC3Sf31Hh1YZ6th9Qafp/D/lx9ObF9ChPZIdXdDi4saO4+0/n5b evkGN2dVDKpYiPmABGLfgco/Pcgtq/rf/0hsRk/ojPPB5paC/LByXz2eLs5GiQSk i8iSZPpTd2WgcVL2yI0QjnXkzQYRd8FJOUFfj8ZJfuPqIqbb3DBmTIXV91ODnENp KqxYUgAAxNvA96g6A1FeSlahFLvYOgwfyrUy7joL+eLoQFYrgvmkfm41phNOxUIz uTL2CwaVMMKSBWPAeqFd/u2JsSSwbX/oRDnsPuI7klKQ3vrsZQAP6MAi6dnjeqJo vTUyRVnZSPMjhA== =acsL -----END PGP SIGNATURE-----