-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 28 Apr 2024 20:48:02 +0200 Source: qtbase-opensource-src Architecture: source Version: 5.15.8+dfsg-11+deb12u2 Distribution: bookworm Urgency: medium Maintainer: Debian Qt/KDE Maintainers <debian-qt-kde@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Closes: 1060694 1064053 Changes: qtbase-opensource-src (5.15.8+dfsg-11+deb12u2) bookworm; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2024-25580 (Closes: #1064053) fix buffer overflow due to crafted KTX image file * CVE-2023-51714 (Closes: #1060694) fix incorrect HPack integer overflow check. Checksums-Sha1: 916a55477ac0003888c3a3f30663f2a59a5000fd 5596 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.dsc 6e4d79b91e82c72821b31e8dd9b8a44f50b7f0bd 47919576 qtbase-opensource-src_5.15.8+dfsg.orig.tar.xz a890f3ce91290f6d473ace85e3f0865b06a686fa 242532 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.debian.tar.xz cc5b125c1a49e3fb94a3743ea67ae5cc410bc15d 35902 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2_amd64.buildinfo Checksums-Sha256: b1d049863521754ce5bf033b6202b8b68099031e6a7fcb31da70bff6ecf077ab 5596 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.dsc d1c61b777850c2953862a8d52c7afb56350a99b23af763beb44c51c6fe8c0e38 47919576 qtbase-opensource-src_5.15.8+dfsg.orig.tar.xz 71c39bedd2386dfb5237d9c21a66470c63cb83e71ed42082d59698cef759ae3a 242532 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.debian.tar.xz 405e1f5b5fa269f8c42d0dd5241e305d54aa135254df1c8b83fb45b69794ca02 35902 qtbase-opensource-src_5.15.8+dfsg-11+deb12u2_amd64.buildinfo Files: bea520586f8db45d2b54434b8a16145c 5596 libs optional qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.dsc 764988e23f4b728f7d8bc25f10355507 47919576 libs optional qtbase-opensource-src_5.15.8+dfsg.orig.tar.xz 04b6c0f6e0470a38d7d75f343f0eaa68 242532 libs optional qtbase-opensource-src_5.15.8+dfsg-11+deb12u2.debian.tar.xz 3a2a7126fbd75453d27bccba52dd347d 35902 libs optional qtbase-opensource-src_5.15.8+dfsg-11+deb12u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmZvIxRfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYRxWFEAC8nVADXneTEGZ1gnlSMAtmpWml4oXr tIEFveVtBQ1atw09JwGGaHxLRKVFZKpUPaRyj2gfhMxRkHyX4kUfGbdCZcIvDLcL /YKLyUpQg7T+q0ioEpwR5p47fBibSBjVqeBAmfQBQ2oXvdf4fSle5kcV7iQxRMU1 WPgxGdP5gwhg6b2vlGMg5i3iH2c+LuNA8U1PGk3cSv0RipgqsC9PBGAJttDt+uSS VBbLCNbxzVgBJ0+oVkenCjeMQw3b0RxSDL/jTDhnsBsag7Vw/0DFfUSpntVvZAhy TmWUc/fShHcGuc8LUiDw4wF13Aeg6YzRucTJvfAZHLEw7f/akRsdnHcmNNLUr16T 1h32qfX0HRBa//eEPY4DhY1A7w3twecDRo+yfytPeM1RckMAyO7aX1nRFbJ4KECK TC0vFHPJyTgnhVkQ5Gsx7p91vEbm35/t9zkhVl89PNWm4ep2ypMmAfsMmZFZhFMh Rq2uOHlzA+MfJFh54Se8luEHwT+hUrR36CMDu7A4LBrlcG6W7reyhsQpxuR3Li6c G935sldG6T29+N1yJ7h5KatLIw91dU6H5ucQ266jx3CHlqaAEBsbOr9woxbYUKqo hyh9yvOsaeI2uUNMguZ3E6iazYiAMD9QXnQ2r9et/HwqmatF8rd9/9UKoZABMeSA NddjPIfWXSwKqw== =RfsJ -----END PGP SIGNATURE-----