-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 22 Mar 2010 11:21:14 -0300 Source: poppler Binary: libpoppler3 libpoppler-dev libpoppler-glib3 libpoppler-glib-dev libpoppler-qt2 libpoppler-qt-dev libpoppler-qt4-3 libpoppler-qt4-dev poppler-utils poppler-dbg Architecture: source i386 Version: 0.8.7-3.1 Distribution: stable-proposed-updates Urgency: high Maintainer: Loic Minier <lool@dooz.org> Changed-By: Luciano Bello <luciano@debian.org> Description: libpoppler-dev - PDF rendering library -- development files libpoppler-glib-dev - PDF rendering library -- development files (GLib interface) libpoppler-glib3 - PDF rendering library (GLib-based shared library) libpoppler-qt-dev - PDF rendering library -- development files (Qt 3 interface) libpoppler-qt2 - PDF rendering library (Qt 3 based shared library) libpoppler-qt4-3 - PDF rendering library (Qt 4 based shared library) libpoppler-qt4-dev - PDF rendering library -- development files (Qt 4 interface) libpoppler3 - PDF rendering library poppler-dbg - PDF rendering library - detached debugging symbols poppler-utils - PDF utilitites (based on libpoppler) Closes: 524806 Changes: poppler (0.8.7-3.1) stable-proposed-updates; urgency=high . * Non-maintainer upload by the Security Team. * Fix integer overflow in SplashBitmap::SplashBitmap leading to a heap-based buffer overflow resulting in arbitrary code execution via crafted pdf files (CVE-2009-1188; Closes: #524806). Checksums-Sha1: 710e7205316f91979d5168e2e32080affabd8170 1488 poppler_0.8.7-3.1.dsc 66964d887a8f3a9278fa2e7a52c2a2866792c096 23488 poppler_0.8.7-3.1.diff.gz 5a01ffb1367b516089fd2ea5b02138d4242bde8e 813458 libpoppler3_0.8.7-3.1_i386.deb 2d0666ab8dda08a34dfa73d187c0a4b0ba05b475 1055974 libpoppler-dev_0.8.7-3.1_i386.deb 4dc0a9098fd589d7d450c965c82ba7dc2288a1b8 214436 libpoppler-glib3_0.8.7-3.1_i386.deb a1c2c5dba10a7baed95a7484eb68e50d45aa05c1 270772 libpoppler-glib-dev_0.8.7-3.1_i386.deb c066fff2b6d4572b6827d90dfec98409fc317fbb 177550 libpoppler-qt2_0.8.7-3.1_i386.deb e7b5041a6a398bc3112e856d16fe73822bfe1508 181430 libpoppler-qt-dev_0.8.7-3.1_i386.deb f9f5cf8f10bba24dc42dd54cce607392d31d4359 312660 libpoppler-qt4-3_0.8.7-3.1_i386.deb 6d2d2f5c557fa8d3961b338a5b1a80efbd319136 343532 libpoppler-qt4-dev_0.8.7-3.1_i386.deb d965d444f015a474a4d57b969ba3dc2365860105 226314 poppler-utils_0.8.7-3.1_i386.deb 443fcbb3e5a719acb82923e5ea00940399d82552 3062042 poppler-dbg_0.8.7-3.1_i386.deb Checksums-Sha256: 1944da10afb7527a8812f42eb7a8bc8b3a5b61e1a7d5f8c15cef199cb4f24011 1488 poppler_0.8.7-3.1.dsc 15deca354e0faedde5d2aa58d5b026db58012b775e799ea25ac8eab9a4dd9571 23488 poppler_0.8.7-3.1.diff.gz 217297fd3ea0fafb049793dccaf5266c00eefb6be41db293fcb842d9db29bb0a 813458 libpoppler3_0.8.7-3.1_i386.deb 58090e1148410444b36f16153f35049f8d92942737368c2623b29fec4b0cc752 1055974 libpoppler-dev_0.8.7-3.1_i386.deb bd65f44221e0f02579ec7ee373db5b6b5024168191ebfa3bf7e9e47a4996be47 214436 libpoppler-glib3_0.8.7-3.1_i386.deb 59bdbef1e422cd78bc114738fcaa699b617454294e07d428d8c6eff20c5197f6 270772 libpoppler-glib-dev_0.8.7-3.1_i386.deb 347371abc8d83b273b807556bc99feae36a611841e03c20cc875bad18f7c58c4 177550 libpoppler-qt2_0.8.7-3.1_i386.deb 59a0cd79c7ef4a8d48503a756657ab1d18e789cbbc26e1e1fd3c3c81e176e8e2 181430 libpoppler-qt-dev_0.8.7-3.1_i386.deb 7a6d368f76b4e6955c9008f68b9b8bfb7df84c844b6b5e0f8e0455c3c8147088 312660 libpoppler-qt4-3_0.8.7-3.1_i386.deb 167e40371e222ba78cf284b0d1b15c9ff19f2498ddc8295ff2af377758f5d323 343532 libpoppler-qt4-dev_0.8.7-3.1_i386.deb 53346b35ecb3b4ca943456c3f79c513029675101f6ae39eaf7e12ba6b5415cd6 226314 poppler-utils_0.8.7-3.1_i386.deb 2043381124051a38538858392d68f1b212eaf3ba71e94222add31ab9a973e84f 3062042 poppler-dbg_0.8.7-3.1_i386.deb Files: f3cd57d8e204030351e11b5af4fba6b8 1488 devel optional poppler_0.8.7-3.1.dsc 94adf78680ae666b4bafca058a7bc25b 23488 devel optional poppler_0.8.7-3.1.diff.gz 02897e66cd3c27b543d7e30174ce0bdd 813458 libs optional libpoppler3_0.8.7-3.1_i386.deb 581184b4b382e5f2d368711d63948ebb 1055974 libdevel optional libpoppler-dev_0.8.7-3.1_i386.deb 10e2a2794f04e64988c3e0f7013226b3 214436 libs optional libpoppler-glib3_0.8.7-3.1_i386.deb f131c88fc168be2222bdda7b4e622b44 270772 libdevel optional libpoppler-glib-dev_0.8.7-3.1_i386.deb 80e80fe1828b6e955ba629c7522055ac 177550 libs optional libpoppler-qt2_0.8.7-3.1_i386.deb be0a0a8c4ea9c36a6db5243706f095fe 181430 libdevel optional libpoppler-qt-dev_0.8.7-3.1_i386.deb 16c41fdb2781a9a6ad3187c44638af43 312660 libs optional libpoppler-qt4-3_0.8.7-3.1_i386.deb a204d6d3cc4182ffc6547e75188f7815 343532 libdevel optional libpoppler-qt4-dev_0.8.7-3.1_i386.deb 203fa7181e6f156d60cf2b2b587c4759 226314 utils optional poppler-utils_0.8.7-3.1_i386.deb 15653ddf7b985345a016cefe1a0a128b 3062042 libs extra poppler-dbg_0.8.7-3.1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkutDZQACgkQQWTRs4lLtHlZlwCguJ9RlcnttLl6yZY21r6iYr63 2H4AnRX+mZG6Yh7X2/4aEOMeYj7BlgP1 =IaEJ -----END PGP SIGNATURE----- Accepted: libpoppler-dev_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-dev_0.8.7-3.1_i386.deb libpoppler-glib-dev_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-glib-dev_0.8.7-3.1_i386.deb libpoppler-glib3_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-glib3_0.8.7-3.1_i386.deb libpoppler-qt-dev_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-qt-dev_0.8.7-3.1_i386.deb libpoppler-qt2_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-qt2_0.8.7-3.1_i386.deb libpoppler-qt4-3_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-qt4-3_0.8.7-3.1_i386.deb libpoppler-qt4-dev_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler-qt4-dev_0.8.7-3.1_i386.deb libpoppler3_0.8.7-3.1_i386.deb to main/p/poppler/libpoppler3_0.8.7-3.1_i386.deb poppler-dbg_0.8.7-3.1_i386.deb to main/p/poppler/poppler-dbg_0.8.7-3.1_i386.deb poppler-utils_0.8.7-3.1_i386.deb to main/p/poppler/poppler-utils_0.8.7-3.1_i386.deb poppler_0.8.7-3.1.diff.gz to main/p/poppler/poppler_0.8.7-3.1.diff.gz poppler_0.8.7-3.1.dsc to main/p/poppler/poppler_0.8.7-3.1.dsc