-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 24 Mar 2008 00:58:02 -0700 Source: exiftags Binary: exiftags Architecture: source i386 Version: 0.98-1.1+0sarge1 Distribution: oldstable-security Urgency: high Maintainer: Mike Mattice <mattice@debian.org> Changed-By: Devin Carraway <devin@debian.org> Description: exiftags - Utility to read Exif tags from a digital camera JPEG file Changes: exiftags (0.98-1.1+0sarge1) oldstable-security; urgency=high . * Non-maintainer upload by the Security Team. * Backport upstream fixes from v1.01: - CVE-2007-6354, CVE-2007-6355: integer overflow and memory access errors through inadequate EXIF data validation - CVE-2007-6356: recursive IFD references in EXIF data would cause a denial of service via infinite loop Files: b85e0a4a382cac6a844af52e42c670bb 873 graphics optional exiftags_0.98-1.1+0sarge1.dsc 3baa30a42f531580a502a3f3818ead56 5131 graphics optional exiftags_0.98-1.1+0sarge1.diff.gz 1850fa2d6b54fe1029553605509ef7cf 52514 graphics optional exiftags_0.98-1.1+0sarge1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBR++Admz0hbPcukPfAQJtTQf9GPN5BemUTWJJuMB7rYMZ6OY2Hgo8Jtxm aNRK0GWIgjd/h2J0d7btSnFxVfPBqBsMSucrD07WeI1KQmg5Zlos0zyylvoF2Zhd 54a2KdjzpRJtGeTMgCPmFnvIiglwdaBzUZNbwrB49kvNygBatHL74o5uQcYMdTRu 4+Ib9oPJCENbtQ/1PiFXjBovv393vEILAZQvB66v/4ld1E4GDHPkOun0rvSyaN2Q OA9CLyy/xRpxPrkdjc3kmk/4JkeTnIhwfltjY+tFXqatJ/xrsFDtWeAhfxmdSYJE zL9hE4HKVJCb1sM12sG5H3zPGRCidEf4Aa7l39887SOz+Oi1oGjeHw== =2bms -----END PGP SIGNATURE----- Accepted: exiftags_0.98-1.1+0sarge1.diff.gz to pool/main/e/exiftags/exiftags_0.98-1.1+0sarge1.diff.gz exiftags_0.98-1.1+0sarge1.dsc to pool/main/e/exiftags/exiftags_0.98-1.1+0sarge1.dsc exiftags_0.98-1.1+0sarge1_i386.deb to pool/main/e/exiftags/exiftags_0.98-1.1+0sarge1_i386.deb