-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Nov 2025 10:45:05 +0100 Source: libcupsfilters Architecture: source Version: 2.1.1-2 Distribution: unstable Urgency: medium Maintainer: Debian Printing Team <debian-printing@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Closes: 1120697 1120703 Changes: libcupsfilters (2.1.1-2) unstable; urgency=medium . * CVE-2025-64503 fix an out of bounds write vulnerability when processing crafted PDF files containing a large 'Mediabox' value. (Closes: #1120697) . * CVE-2025-57812 fix an out of bounds read/write vulnerability in the processing of TIFF image files. (Closes: #1120703) Checksums-Sha1: ca9532ff64db5db4e564b6dbc8efcef09c5fa955 2899 libcupsfilters_2.1.1-2.dsc f9f17f5b476a675b6e1cb119dd79df942b2f2c60 1370053 libcupsfilters_2.1.1.orig.tar.gz 2d9bf717e6c183b9dd9032282c309afda0fb4554 64384 libcupsfilters_2.1.1-2.debian.tar.xz 8f36d563663f533d1dce42a1399bfdb0838894d2 13265 libcupsfilters_2.1.1-2_amd64.buildinfo Checksums-Sha256: 1a76541c5a7ad4ce7d7e2d8d07dfc31eceac89b634a9f26808e3ca807ff76ebe 2899 libcupsfilters_2.1.1-2.dsc 26dc9dc502d811c6f7e24ddea54dac5e7b8db2e2781e6ec6854ec98cc3260f45 1370053 libcupsfilters_2.1.1.orig.tar.gz fef1e2d2cb6b743fdb324972cc21c1f2ca32bd767d536e490c636200391edc3d 64384 libcupsfilters_2.1.1-2.debian.tar.xz 0e541917b1158bbfbd4bb7d35bb078895fecd9f75ec1c10a8fb4773a4f9b1e46 13265 libcupsfilters_2.1.1-2_amd64.buildinfo Files: 5da58b5f4cddc2181cb63b0fcfd4b52e 2899 net optional libcupsfilters_2.1.1-2.dsc d4190ffac666a1f3fd70ad9a91ae9606 1370053 net optional libcupsfilters_2.1.1.orig.tar.gz a6dfc68b2b99ce3ab4f6604980db3500 64384 net optional libcupsfilters_2.1.1-2.debian.tar.xz a74b622534f628157c5d9dc70b767a4c 13265 net optional libcupsfilters_2.1.1-2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmkhrwJfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR282EACetKCV9wDYsDwFQZr0ndtWedG8I1T7 J18gS7+VHnlKbki6js6weto64YlBDDNg2lJf7Zh2o/zd1HpcPYQ6akFaq7I+0jH4 wD/2XQqS5glrQowlCZE8grPIyU6BMbfxzJIXFUdDh8+WXvw58ORMc5HlwGSrx22X DvAmYaD3L7oCdLWjdNEn6CCPLTK0KoiWDHbCuhGdh6DNWJROnOK3jB0pvJzFtV23 WCv9Rw24xTWNBkbjbJc7QeCmzkY7u2TKqp5WIPIeQ6T4XIkemjUhdAyh7bGS0E/8 P6DZnTFzFy3wQNz8XTS7UE9yK2dUptAqYXMLfSWwS/U7kPUNCBXNuQsgH+b/oIcs zZtiDrONW+Wn8iP3dzbIWtYZk+SU9Lo/rpqlUgCn+eo5oSebkeHxKqZvV099g2t2 Kat+LdJcAqqpDHFarktnVNE5kLAVmZIvRxxpUPGbxMrTw2KeWFunDDV912a8yjg0 u1Tw+uM2X1zkA29En+5i4VfSBRRWWiM0nR3Vze/NiEAwPjfq7FsmGlw3ZthZ+sYa VpQYGqv7D9yvUzadLyM+EHCflzw+VpCH982NEXgP8QI6r7yLECaArjgFpt5qy83y y3rXrKIij839DZDJvpXiFuKo+WecvXuau0HcYUoK8lfAGagOh5WErU9u240khz8x 2mqsa/wwrhNYlg== =UYCb -----END PGP SIGNATURE-----