-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 26 Jun 2024 21:22:32 +0300 Source: dcmtk Architecture: source Version: 3.6.4-2.1+deb10u1 Distribution: buster-security Urgency: medium Maintainer: Debian Med Packaging Team <debian-med-packaging@lists.alioth.debian.org> Changed-By: Adrian Bunk <bunk@debian.org> Changes: dcmtk (3.6.4-2.1+deb10u1) buster-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2021-41687: Incorrect freeing of memory * CVE-2021-41688: Incorrect freeing of memory * CVE-2021-41689: NULL pointer dereference * CVE-2021-41690: Incorrect freeing of memory * CVE-2022-2121: NULL pointer dereference * CVE-2022-43272: Memory leak in single process mode * CVE-2024-28130: Segmentation faults due to incorrect typecast * CVE-2024-34508: Segmentation fault via invalid DIMSE message * CVE-2024-34509: Segmentation fault via invalid DIMSE message Checksums-Sha1: df2f37a77d5bc357e480411e0d2645a3ef1045e7 2276 dcmtk_3.6.4-2.1+deb10u1.dsc 8f624eb609f2771f304cf4372a39a86d577f03f5 6402734 dcmtk_3.6.4.orig.tar.gz 7e7d8c99fa94006b09f5db68928b232063d78859 46924 dcmtk_3.6.4-2.1+deb10u1.debian.tar.xz Checksums-Sha256: 46d517fb9f23a7ea2917d5c97d8f65ef89ffe60454b39dc45ed8f900f2647b90 2276 dcmtk_3.6.4-2.1+deb10u1.dsc a93ff354fae091689a0740a1000cde7d4378fdf733aef9287a70d7091efa42c0 6402734 dcmtk_3.6.4.orig.tar.gz 28ac4258ea7dea60aa46c6ac46b9397212f3c4b4c3928bf84c56f46bb0d59e1e 46924 dcmtk_3.6.4-2.1+deb10u1.debian.tar.xz Files: fd42def1e103c1d5284313da3a141e1a 2276 science optional dcmtk_3.6.4-2.1+deb10u1.dsc 97597439a2ae7a39086066318db5f3bc 6402734 science optional dcmtk_3.6.4.orig.tar.gz 87b40be6ea21f0c8badca80d73b679ee 46924 science optional dcmtk_3.6.4-2.1+deb10u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEOvp1f6xuoR0v9F3wiNJCh6LYmLEFAmZ8YGkACgkQiNJCh6LY mLF3bRAAodhXC5QjYhX9Tz3wjsIwvEG/MUbaMs4U2Cb+4aDEZX24FYLNoLeH02lR 3Ccty/bLOMNlPcMYlQ9lpG/KoANlzPOf3iV2M3OpIGzKQlziUUpFarg0H6Z4W2Vw fU6i28I85SO3vD29IT2TUpkDbkPsUfYB5ud0To8VygLZh8hJ2RzU71TUxUhUa8vi OFfZPAcj7UALpG/w5gHptop99kGt8c58xvcTkmkMRnUVTpiE01Mk07Zgsi6MuOJH YCpj5FJBKJE9gbzQrdH/umIFyYE97IszxEjrMe1wehGvX7COtghZ8DU1b+iDIMCm TiuOadJxcabRNnXBkx6SOInRvKa0Kbfg9VTpsBbtK44p5pQ6mEU2zJHL+luZCO8W SxgRBg+WvD70Sr4J4Kmk1TdF1I+RVyV7oIs2qyy26egJRN/pqgTLWEMmUuVsmZNw TtjL4f8RBbNYEkBqX1sKGLGvqc+82pwevvOni/ETTQz8UH92QwMrJK+taGpcDdce Psf0gV7/bHNlAAcCzxG7N9eGS4NgBGzprFb07zk5adGuQlseUj2jpDXgiHEV7x9H IPlZqBwU1tRLf033nK3lQ4g57svitmAyKUmZ8MOz21KHlJYNwQ6asDbQzAtKKsod jgHYYYJsfY6zfdOTHrCiLwaJf2ZlN9F+4VXC4f7+kEuD3P0wQiE= =7ft5 -----END PGP SIGNATURE-----