-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 30 Apr 2025 19:29:54 +0200 Source: vips Architecture: source Version: 8.10.5-2+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Guilhem Moulin <guilhem@debian.org> Changes: vips (8.10.5-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CVE-2025-29769: Potential heap-based buffer overflow when attempting to convert multiband TIFF input to HEIF output. Checksums-Sha1: 61e90bb4a72d6404336a458dbd6c595e912a256e 2503 vips_8.10.5-2+deb11u1.dsc 75f06d6a30c84ff22879841eacba3c0993f32f1e 19519397 vips_8.10.5.orig.tar.gz edcf626586233dde39668bd07bd61ac8f6397669 13424 vips_8.10.5-2+deb11u1.debian.tar.xz ce2c7a6e422bc8db3efb0411cfe018f16f594015 16943 vips_8.10.5-2+deb11u1_amd64.buildinfo Checksums-Sha256: 34744aa90713aaa04d7d30b36e0f1b73137de0fc9dba5cc08a74b41f375adad6 2503 vips_8.10.5-2+deb11u1.dsc a4eef2f5334ab6dbf133cd3c6d6394d5bdb3e76d5ea4d578b02e1bc3d9e1cfd8 19519397 vips_8.10.5.orig.tar.gz f36f0b86dc72fd96630667abee5d981f5d2edc6aea8624f1e6436e6c0fb1ca93 13424 vips_8.10.5-2+deb11u1.debian.tar.xz 36dee0bab1947b2d2fe021e5bae9c70c30d2f0e7b635076a36948839a461df6b 16943 vips_8.10.5-2+deb11u1_amd64.buildinfo Files: b5bc8c6817c176fb788e2625f13b20fd 2503 libs optional vips_8.10.5-2+deb11u1.dsc 96b45bc3406b0dd1aa55e74f979a49d6 19519397 libs optional vips_8.10.5.orig.tar.gz 2c876bf92e50fc44742bf0c7d6a6f524 13424 libs optional vips_8.10.5-2+deb11u1.debian.tar.xz 9707a51b4e42238bb4b2bbd8a4a8ed13 16943 libs optional vips_8.10.5-2+deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERpy6p3b9sfzUdbME05pJnDwhpVIFAmgSYF4ACgkQ05pJnDwh pVLkCQ//bhLO4HqiRp60QeudhYn9HYae2OBZQMAlK9OgnCWQBK7Pd6Q61T/Wf0Dj VlNnQsXyBn14ONeD3sFSPGCBsypnhstQQ5Wqt05Bc7z+UiowaAbw6z1rOmJ+M7tG VOMXTC2YDnHT2MtNk/OOs/qp+AAud/PPRLLF5oOftoDgB36bUZjmxevjk6iShkv+ cKlyWncBGfYdgiyhkYsqN2o8HyxVFAz1apiLVMBGePrtkiUcPILwQL6G3rOEZ0r1 umfAE8GZ6KnR6utyCAmzT08ZA5PilARVX3CoZMHKHMhlAvioNLY7UvHgYKbVEuKJ xkfcaiIw2P4AB0ayzbNFwEQDdFJ+vsWyn2nNZgXqxAhsm9w6fXSiiR+B8amCpmCI /g5z1pTOD/F1YFfYcGIx1oIoR+SbVjFiupsw1GQ5lGCW5HVBLI76j1XD7LF0TYuR FHwy+MFXutxt6XS28qLb/Sr7KvYmcfH0m6z6RTbgEe9AbH+znNjAmyot2fJ/Z6Ya WqJb886e6nnu7aNmOfYelut5d8JXvnJC6/t0qWnc5qU0axD0dNQT/WMIn0mYu4z9 1hcnfVg/JZnYTtXKscprUK+a00lJIbaF1ZC2NRoKbHD3hWTPrVhyDfAFUPZCo/C4 rQue5GJ9W39VkbU+zt8vDyORhywnpbGV01swsbLzcoUZSofa6vg= =cqBU -----END PGP SIGNATURE-----