-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 17 Jan 2026 21:00:54 -0500 Source: pdfminer Architecture: source Version: 20260107+dfsg-1 Distribution: unstable Urgency: medium Maintainer: Debian Python Team <team+python@tracker.debian.org> Changed-By: Boyuan Yang <byang@debian.org> Closes: 1082887 1113990 Changes: pdfminer (20260107+dfsg-1) unstable; urgency=medium . * Team upload. * New upstream version 20260107. (Closes: #1113990) (Also #1120642, CVE-2025-64512) * debian/control: Bump Standards-Version to 4.7.3; drop Priority: optional. * debian/tests/control: Add dependency to pdfminer-data since some tests requires the data files to be present. * debian/rules: Migrate to use pyproject.toml in package building. * debian/rules: Remove hardcoding of VERSION, prefer using importlib.metadata. * debian/rules: Update handling of cmap files. * debian/rules: Avoid calling pybuild tool directly. * debian/rules: Enable verbose build. * debian/watch: Update to version 5. * debian/patches/: - 0003-Fix-arbitary-code-execution: Dropped, merged upstream. - 0002-Avoid-timestamps-in-gzip-compressed-file-and-use-com.patch: Rewrite the reproducibility patch, which natually closes: #1082887. - debian/patches/0001: Dropped, now useless. Checksums-Sha1: 45607f6415643ea626c48f7522f67a252ea6f614 2403 pdfminer_20260107+dfsg-1.dsc 8563f035e05b68db11e4794c7926b07f2328d90c 7889784 pdfminer_20260107+dfsg.orig.tar.xz ca2ef28314e09e98e2ab9839028f3d3d304aa50b 12888 pdfminer_20260107+dfsg-1.debian.tar.xz b5df9960822e6a3f9496e5d3dbd624d3c04792dd 7958 pdfminer_20260107+dfsg-1_amd64.buildinfo Checksums-Sha256: e97d9b89bdb00bc9ed544be6e61c12edcc8cb7865a8043360cb0c9409772caac 2403 pdfminer_20260107+dfsg-1.dsc 84965b0f0959b94b7a228b827414a14ab02fe56aa54365c6ae081300d341d04b 7889784 pdfminer_20260107+dfsg.orig.tar.xz 64b20bf924a39a92ed8facca12fd70833e6a6c17b6ccd1efa69f81a62baf0c9d 12888 pdfminer_20260107+dfsg-1.debian.tar.xz 509142fb87a8ab2de550e83082d728e03b75faf8c922a1d4ea1fc39c2d2b9f69 7958 pdfminer_20260107+dfsg-1_amd64.buildinfo Files: cf624a89fc24f9366dfe156e3bafb7ea 2403 python optional pdfminer_20260107+dfsg-1.dsc eccb19d703f8837ae3f4d0eb50988466 7889784 python optional pdfminer_20260107+dfsg.orig.tar.xz 5d418c837feb21b78060bfe680f64f6e 12888 python optional pdfminer_20260107+dfsg-1.debian.tar.xz 895c1b0041cb4dba386990eef440efc1 7958 python optional pdfminer_20260107+dfsg-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfncpR22H1vEdkazLwpPntGGCWs4FAmlsP2cACgkQwpPntGGC Ws6aHQ/9FKvXmMpytvsphb0f4DRLOn7fYpQb2WqoL4ewsvr9u+NO1ZfzZuiXswo3 0OBsuelY61yEAkGHfoKDvlduLHn7MWOrMhNALzU4mipPDHHsNA1TdsDS94c1ccRE 6ufhgqsnb5PyTr/y2Kxau+JN0e87e5N/jd6AJrIjwtHH6dE3adWmc4eUEA4aPqH+ QaKBvC+lxPOO6KwSacC1hEl1gEB7zNQ1ZqJtG2mMLOaz6xriqXTSGMQ7a31EAcBF F8JocXUil4tnnV0xmBk3h+70JyU6xcmBVUK8TJA+vNnN5VWFw1BwQmA/8SqjGyRG /y8OAV2iJlfal9zkbaswVkn3BQ8DUJrL5RcSovFt5QnGG0Avn/TYHOMSyXH3oDij bDgQFWOHw3zYwGjxv5YIAe2vcMVD8QxM9jAouSYCfvFf56j8jOpCdrm8tPMcO9yc 3HzJDwJR/O9gmg6MZbEQNFvsfiyNijXolsZ6MH+K5Ml8Mtp9SnHM9tDw1E8Nzh79 IxZB3XHL8hdCKLDsihQ6EUZbZezPpymOzh48DrzIKK2bFysvY38OwuL0aa5rZLOO LXN5yHliQt/2XlD1CT2DYBPt+GL3XA1dXiAllUk+0vpTbsdXQypZMJ0KnmxZBV5m xP3xq1uzsOmP3MrbW+6jMqaHk49XrF2Twbzz3u7djAq8dsmZJnQ= =LBPf -----END PGP SIGNATURE-----