-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 22 Jan 2015 17:09:24 +0100 Source: jasper Binary: libjasper1 libjasper-dev libjasper-runtime Architecture: source amd64 Version: 1.900.1-debian1-2.4 Distribution: unstable Urgency: high Maintainer: Roland Stigge <stigge@antcom.de> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libjasper-dev - Development files for the JasPer JPEG-2000 library libjasper-runtime - Programs for manipulating JPEG-2000 files libjasper1 - JasPer JPEG-2000 runtime library Closes: 775970 Changes: jasper (1.900.1-debian1-2.4) unstable; urgency=high . * Non-maintainer upload. * Add 07-CVE-2014-8157.patch patch. CVE-2014-8157: dec->numtiles off-by-one check in jpc_dec_process_sot(). (Closes: #775970) * Add 08-CVE-2014-8158.patch patch. CVE-2014-8158: unrestricted stack memory use in jpc_qmfb.c (Closes: #775970) Checksums-Sha1: 671278302ddba443c2bf1a4239d7cdedb235d78b 1927 jasper_1.900.1-debian1-2.4.dsc 8edf28dab43a88903de4ca70c2753a6e45273a79 29504 jasper_1.900.1-debian1-2.4.debian.tar.xz Checksums-Sha256: 8d5f2e8de142c57220df75e965ea07628a2c70e20d87c3d25c82a10bafa9326e 1927 jasper_1.900.1-debian1-2.4.dsc 64781a9307c5aee8c69c7ab78b699f67310172ec4a42202f50555c2a514f3249 29504 jasper_1.900.1-debian1-2.4.debian.tar.xz Files: 75490a9daf5859a8084e204dac1777e7 1927 graphics optional jasper_1.900.1-debian1-2.4.dsc 5005a6124ed2d705e1beb7ea0e385c9e 29504 graphics optional jasper_1.900.1-debian1-2.4.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJUwTYeAAoJEAVMuPMTQ89ENagP/214vYQw1pR+3aIHpuemWss+ zDAJwIUDowHg7wMHpbA99YBjjbu2B7q7TGIJMP9+9ZIfA/ma+vHGPXaEbl8wUi16 BURBhxkYTZOId/B4pfpDcfIuFs2VluWMBmzQ9Eyuxxqs03rNAil1eh7Xzw9exZPU EEFZvM0slBkjVYGP9vh0hOO7U3xM5nLUp4LrjbZ5YoTj0CUW8najIRRLmWC+jf30 HvqNQqV6AvqXXEwPtkO3GzJevZ3bgrmiASf1930UPeobLgZlSsaWACbZrbMoJrim jJtzZ5Km8u/LcOseMYVMmLMA6526uizx1IpJ82LnYOLllLLeB+LxwGPPfBwtmDfn ECOUBJfMnt9L+SE+DG5rlt7JACl3Gicc5yPbzXN0SqUdXwNjGay6BsZl28cq3Yxt sT3asePa/f+q/wkJ5eYuE8mnsAgGMcZ9DTA705dIESDAqZ2NGhxYj4TMDes/pb6H 6AWUcVofVTLm60N07KDvphN/fqPpC2zSYyv8kOVO5YhjBYjTGBZJ056yotcN7y7q m3ijV2ApfkPiGd67+tYVbERSD17gYYglSeHApMkUuwlQrcdrdU31UFRVxpP/2nCq vujyiXeLkck5CxaArc2K0l5Tdf4JHe9zsZpyZIxDqNQ27dxV+PML1OPLvUHIg021 Pu3gJZE+w1W2EIyNB1+t =irp9 -----END PGP SIGNATURE-----