-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 31 Jan 2025 20:15:52 +0200 Source: dcmtk Architecture: source Version: 3.6.5-1+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: Debian Med Packaging Team <debian-med-packaging@lists.alioth.debian.org> Changed-By: Adrian Bunk <bunk@debian.org> Changes: dcmtk (3.6.5-1+deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2021-41687: Incorrect freeing of memory * CVE-2021-41688: Incorrect freeing of memory * CVE-2021-41689: NULL pointer dereference * CVE-2021-41690: Incorrect freeing of memory * CVE-2022-2121: NULL pointer dereference * CVE-2022-43272: Memory leak in single process mode * CVE-2024-28130: Segmentation faults due to incorrect typecast * CVE-2024-34508: Segmentation fault via invalid DIMSE message * CVE-2024-34509: Segmentation fault via invalid DIMSE message * CVE-2024-47796: Improper array index validation * CVE-2024-52333: Improper array index validation Checksums-Sha1: a457c02f0a81942f1c6efb31692414a9e57e08ef 2241 dcmtk_3.6.5-1+deb11u1.dsc 491f7c206f1ed746634af3062b6b791519b13dab 6483626 dcmtk_3.6.5.orig.tar.gz 5971a68f148c46b249f62f7e51357186ac94c3ec 47732 dcmtk_3.6.5-1+deb11u1.debian.tar.xz Checksums-Sha256: 37063de4d0b77c679aa2af1bff359e7183cbcf4e9e5b31b97fa9b946792b022c 2241 dcmtk_3.6.5-1+deb11u1.dsc a05178665f21896dbb0974106dba1ad144975414abd760b4cf8f5cc979f9beb9 6483626 dcmtk_3.6.5.orig.tar.gz 152e9dd79bc6578ac27e37dbec2b0561699591c85341be38788c028770ec610e 47732 dcmtk_3.6.5-1+deb11u1.debian.tar.xz Files: b11cf60adb3b551a010e0b5b26a15a18 2241 science optional dcmtk_3.6.5-1+deb11u1.dsc e19707f64ee5695c496b9c1e48e39d07 6483626 science optional dcmtk_3.6.5.orig.tar.gz 6aaed13ff9696596d16a5b5fd9ca4d87 47732 science optional dcmtk_3.6.5-1+deb11u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEOvp1f6xuoR0v9F3wiNJCh6LYmLEFAmedIz8ACgkQiNJCh6LY mLF9jRAAschnZ4l+lvqhBlvDrlKooxoqDqaTdfdNLnAk+gIT3Yp6RmwEe9BaomUH acwEa1YAXiP9EmJsbWCS4o0QMqHSnolwv5ERL97vc0tiqjh6qfaNlvHuK/F27ICL eDn7h+ML1RnnMJzEgmFRfi5XrhqjVpjEm2er/+AMzjuZZSp7xgLrfhisaK4OyCe2 fpl8DeCwhVcgquPvQly99JTne9X0kpkdsXW13tJf175Y9hH7C1hgWv9tXhwRgo7q fKKe4uyznIGGJcqeils3MvTCF0rTMcy2fuVJ8oNgHePg1oV5rpw/NHDFMqT1/r9N +0DdkwdhbSkdwFQXz2Dd8Jvb1o0Mu/S2a6LWZ0FyUmz2r2Gdx2X0JiLlAGqzw+N3 U1Ks4WPV0lHZkLHrT5KYJi3akCvv3V3Q23BvvjlLNG65PmeusvI3JkBaiIi9Wqpb xVDoVw5A3h4ncxG5We/jhBObkr6uBqp/0a/BRwdW1zih+ysEd+HN6nRpDColLkPO QNmC6oZE6b+/xNbnGez+CXL5FkXelV/pi5rHA8ELbcIYIipMgpZaAbgTtEUY9GuJ +rMM/0uk7CX6Xk+iAJV3xC45va6lLdhVQ/MHZrfzkyM5Z58vaSqCexbK2KIw4lgg iiPSi+BOzdEK3ODSx7Ty/VjwVfagy/5MW6OMdJzCSlcaquTFo/0= =Jfim -----END PGP SIGNATURE-----