-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 15 Jul 2024 16:46:25 +0200 Source: freerdp2 Architecture: source Version: 2.11.7+dfsg1-1 Distribution: unstable Urgency: medium Maintainer: Debian Remote Maintainers <debian-remote@lists.debian.org> Changed-By: Mike Gabriel <sunweaver@debian.org> Closes: 1069728 1073156 Changes: freerdp2 (2.11.7+dfsg1-1) unstable; urgency=medium . [ Mike Gabriel ] * New upstream release. (Closes: #1069728). + CVE-2024-32041 [Low[ OutOfBound Read in zgfx_decompress_segment. + CVE-2024-32039 [Moderate] Integer overflow & OutOfBound Write in clear_decompress_residual_data. + CVE-2024-32040 [Low] integer underflow in nsc_rle_decode. + CVE-2024-32458 [Low] OutOfBound Read in planar_skip_plane_rle. + CVE-2024-32459 [Low] OutOfBound Read in ncrush_decompress. + CVE-2024-32460 [Low] OutOfBound Read in interleaved_decompress. . [ Nathan Pratta Teodosio ] * Add autopkgtest to test whether a client can connect to an XRDP server via freerdp2 and that the login screen shows up (Closes: #1073156) (LP: #2060976) Checksums-Sha1: 153e2ee8e4e56b49ba90dc9f8793befc615cc79e 3630 freerdp2_2.11.7+dfsg1-1.dsc 245165e9a6a8b09d41f4a81a05986bb0793d8ea4 2272440 freerdp2_2.11.7+dfsg1.orig.tar.xz 135c34660e45274d85ceabba77c2e826cd0edc12 46364 freerdp2_2.11.7+dfsg1-1.debian.tar.xz 5e54a3b38c9aa2ff665835801dec3e0772157277 14585 freerdp2_2.11.7+dfsg1-1_source.buildinfo Checksums-Sha256: 7364ac3684e392dae035df826e6c5d64455ce2dbdfd9e994d4d7d49269abe442 3630 freerdp2_2.11.7+dfsg1-1.dsc 27339a725e5bc4af867cd3f4825b1dbffced05a1fe1487b1e0baea7649050a58 2272440 freerdp2_2.11.7+dfsg1.orig.tar.xz 32b3d4fe64b55a00f968a0d2201b8525bdd39b4600f487edc1b8dbad519549c1 46364 freerdp2_2.11.7+dfsg1-1.debian.tar.xz 20df1e18caa159cc8d176859431c840629370ba38a7c651158538921ac38cb90 14585 freerdp2_2.11.7+dfsg1-1_source.buildinfo Files: f475c445dde35b95b951f6661b549aa4 3630 x11 optional freerdp2_2.11.7+dfsg1-1.dsc 5aaf33f976ccce406af7f44affb1edee 2272440 x11 optional freerdp2_2.11.7+dfsg1.orig.tar.xz 578626a7f4e1d0061990f95b672d87ab 46364 x11 optional freerdp2_2.11.7+dfsg1-1.debian.tar.xz 837d3e68a76a0d0338cdc51d97d075d0 14585 x11 optional freerdp2_2.11.7+dfsg1-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJJBAEBCAAzFiEEm/uu6GwKpf+/IgeCmvRrMCV3GzEFAmaVN2UVHHN1bndlYXZl ckBkZWJpYW4ub3JnAAoJEJr0azAldxsxrikP/0PWw8Wzv2O0RebSaeX7+EcQLNPq zCq2Tk5yMcQejCUZEbngkNvUPVSqfAe9mqJj0g7XrWtLOiOYdaWHmKs1oBmLpTe3 p7T6T7+I4llsKxCMBXTRJcr/VoxPO3PkVNlxHbf+4QWmcOezb+mQ7w3ESYyZSrww 3o54crmB8XgDSkNSYZeMLE/2bnsU9ZrnOhaS+8RbCEITYDEjzshyAtGkptwjsOx8 8fSuMPxQy7wShKCjuYeoW92bvoqBxJCbD1EZscVYp94dMMi9KTHWKPkP+gu3IXc3 9ZOmTTO4FDMVwWIfwpRiVdguL+8TkEJbLPoiIuNoJi6fN0igUdMQ9OqC9R7SQc4a wvAuRMSxCSbbT2iuBicL+Q2hKfJYli1Cqe3cYKzHz/ah7veiqpKQ/o17aYW5/H9C nH+eHRwrGXsJHPxngdXss5jckQg6TqlBQ1j55tz7S/RGFyxl5iTB2K1BZjV9S6RC O6/JrkqR3aF2wt4/lN5ZDM7Lk7ipD5pNryYwAfTexq1u2qR6m1wC7iINnv5eVGRX lSNkdP2X+LIfjAzghEu4Acn0TLs/4xdgCr6vENJgZ1kak5zNgrO+WIfcHTlciEQD TKxB6EvFjz0p5/PKv71OUIoRYOKv40IN0sqptKMQ+b950pnn8cpszEZAQeRsYzg+ xfrfidLLK/EmCKbG =KAUQ -----END PGP SIGNATURE-----