-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 15 Mar 2015 01:30:40 +0000 Source: icu Binary: libicu48 libicu48-dbg libicu-dev icu-doc Architecture: source all i386 Version: 4.8.1.1-12+deb7u2 Distribution: stable-security Urgency: high Maintainer: Jay Berkenbilt <qjb@debian.org> Changed-By: Michael Gilbert <mgilbert@debian.org> Description: icu-doc - API documentation for ICU classes and functions libicu-dev - Development files for International Components for Unicode libicu48 - International Components for Unicode libicu48-dbg - International Components for Unicode Changes: icu (4.8.1.1-12+deb7u2) stable-security; urgency=high . * Non-maintainer upload by the Security Team. - Thanks to Marc Deslauriers for many of the backports. * Backport of icu's new layout engine. - Fixes CVE-2013-1569, CVE-2013-2383, CVE-2013-2384, and CVE-2013-2419. * CVE-2014-6585: out-of-bounds read. * CVE-2014-6591: more out-of-bounds reads. * CVE-2014-7923: memory corruption in regular expression comparison. * CVE-2014-7926: memory corruption in regular expression comparison. * CVE-2014-7940: uninitialized memory in i18n/icol.cpp. * CVE-2014-9654: more regular expression handling issues. Checksums-Sha1: 864c7784ce34a7f169367862831d990dd176e089 2605 icu_4.8.1.1-12+deb7u2.dsc 5e6792e2a456b66fc788c7972f546719a1c6a7db 195940 icu_4.8.1.1-12+deb7u2.debian.tar.gz b69ce9793756372785f0b5ef12dfe1d6c02d534b 1876320 icu-doc_4.8.1.1-12+deb7u2_all.deb e0db3800d0246cce1a2dc0b8d6a200341dcc8d4f 4814268 libicu48_4.8.1.1-12+deb7u2_i386.deb b9fb12648e383c1ee57f37727b6e9f69e740158d 4684216 libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb c380d8f6d4e65940ba8074d95c1c01d9ec5b32c1 5809508 libicu-dev_4.8.1.1-12+deb7u2_i386.deb Checksums-Sha256: 4a2cab532d5afc8062f9ee6a8bd55286c3fc1cc550c63a2570b0aad8bf611d7b 2605 icu_4.8.1.1-12+deb7u2.dsc 8629b1f3a3333923f9cfb30aba2615152633d7b4e6a9b24723847175a33a9ac2 195940 icu_4.8.1.1-12+deb7u2.debian.tar.gz 2c92ea9f66831dc10a16c3cd331926d2df9a24385de05ed485046b1637c52f04 1876320 icu-doc_4.8.1.1-12+deb7u2_all.deb ded46d8cc4dc091af0a2f955d53e095411af36fdd12d091bee67ccd21fc50307 4814268 libicu48_4.8.1.1-12+deb7u2_i386.deb f682b877df405b91fec1695299be85e3e977eaf7c51eca57f737569a8678df6e 4684216 libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb c14a06644b77ccad16a2ee6ef2549b3bee25de7e36cd14eae7cafebd315f4678 5809508 libicu-dev_4.8.1.1-12+deb7u2_i386.deb Files: 1bbe7bb4b533afa66ee565aee6fda5cf 2605 libs optional icu_4.8.1.1-12+deb7u2.dsc 4a825ad16f8b2cf9ca3dd7b27d64d587 195940 libs optional icu_4.8.1.1-12+deb7u2.debian.tar.gz 0f88ea15ccb243d65230e42c11b158c2 1876320 doc optional icu-doc_4.8.1.1-12+deb7u2_all.deb 37bf3465adacfab51aff829964f9cbd8 4814268 libs optional libicu48_4.8.1.1-12+deb7u2_i386.deb c17f1b15601d226e1e87d1e0179de321 4684216 debug extra libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb 3330131aa242bc5c93db93b9fe01933f 5809508 libdevel optional libicu-dev_4.8.1.1-12+deb7u2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQQcBAEBCgAGBQJVBO4ZAAoJELjWss0C1vRzhskf/j9I7aS1Iz3hPLwHGh4sDxyZ Esp5MPqfY2kV5rlJGnQvFK1NFkOjqaHlAMSYCdCKllogCladzF/vznLi+3/sDdYr /enIdiHiUgi/AE+gXRtvLjL2L727uAeAaL4ctyjPLi0x9N75K3wKeT02cvIVD9S4 M1OyWn7LUls+T6gvrhl0db91JGHbkD1co4rOxFnvNHtEyX4glED3uHcwkBkVHcZz 6naIQtO22MZD3nSlNS9SIMp7MqQ+mYGjkFTZB2eyMQkDUS2Rui+f8c1U1x6cuOXf p8o3sMphLoe03xfZQ6XiMXRZN9yXgFJllNDScyUT2v3mqPWX9Om/aObSjaexhIOF cTkh0JsNoL4RoRRQag9l/R1J/IFFtsIljQaFmHUVTFqFYuLBUP/nXVdS7QaQ6F2l ZlUSNOVkeTnWFVZ2sgEAHwhqK86enzJMcKRWj+A87CAzN1WysD+f6+hpn5nfTvNe DQHaxxtZbHPOmM11y6rSKAiNdniTSuO62x3WUbO1urFOr1/fpBx9kjeER8BdL9I8 dNsCPXZZnl1lorkLxWoVI/og1tjYNDR5veDhFmQWGrFfFdSfKZYqeWGNoXXXGVG4 m8Dn6F8sfeYteY2AyRGzyT+V6ffjqqDq0xT5CdZvJqo/19iyup1x8HqGToj+LrHU viZVT8MyooW1ez6P9PAax89Eea8sMsgYY2NG/Q227Zwv8Uo3tbO2HuUzO0z66Zem g7oaaGCrJj01oLed0SPfy9DhvVh3M2PP9g0KyIXPxs2+f5313bLjSw3AaPo+X4i5 noc9U2mOLw5zgzbj2O07TdcaVVMAc3XrmC5mIRSowbhozYSIUPfa5LrQzDXZ/aT4 I19s5q3gzdZvpiE1GxOVDpcp6qbSgBxSugMawtsG44jbM4TJ0dY0qvM6AYCAqfMb xGLMXHB3EYXMNskkmTOboWuVELLCOE/3v1SPNl+Tk5h7t4ndaQ6rNivHb0bFmGjK PXLLpqYrcH24Nkndn/OYlHVxPmQKIqxblvk2vwI+/7dNBgW1phGqr2VNcPmRxgx3 K+pZXsEmonau6QbF35d1ZyAH0GdVrj636Ahr/LHiALbmOyGr8iPFcpnN0+WKXwa0 r5vPUzs938LbENOfx1wl8LPsn0AVl9qlKeWFJ0G4roxIlQczuldrbTLAzV630pDr RDuWqWyHphaxcoqiXzMBSI0KD3c4ukpbqBT6sChlvDH4WfdXWMO11hj1k74DyrAC 4gqty8l+0WwQ6/+V07yas8ynNt7QDskG7onko1PfOfXGvMf93THmHgQaoNw6w2pO fjxJPi1r57UqT+xBw6rfAUQrbXtsGdbOdqtcYXz7m9Yf4euVgXyfmDQWeJ29cqk= =8Axj -----END PGP SIGNATURE-----