-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 25 May 2015 17:45:27 +0200 Source: exactimage Binary: exactimage edisplay exactimage-dbg libexactimage-perl php5-exactimage python-exactimage Architecture: source amd64 Version: 0.8.9-7+deb8u1 Distribution: jessie Urgency: high Maintainer: Sven Eckelmann <sven@narfation.org> Changed-By: Sven Eckelmann <sven@narfation.org> Description: edisplay - fast image manipulation programs (image viewer) exactimage - fast image manipulation programs exactimage-dbg - fast image manipulation library (debug symbols) libexactimage-perl - fast image manipulation library (Perl bindings) php5-exactimage - fast image manipulation library (PHP bindings) python-exactimage - fast image manipulation library (Python bindings) Closes: 786785 Changes: exactimage (0.8.9-7+deb8u1) jessie; urgency=high . * Fix CVE-2015-3885: Integer overflow in the ljpeg_start function in dcraw * debian/patches: - Add CVE-2015-3885.patch, Avoid overflow in ljpeg_start() (Closes: #786785) - Add draw_jpeg_fix.patch, Fix execution order of ljpeg_start() and result check Checksums-Sha1: 671377b86d1802f6132ef307b1b744b4ad87169d 2525 exactimage_0.8.9-7+deb8u1.dsc 4087cd407c5cd5dbb13c4903218d1df751158001 31464 exactimage_0.8.9-7+deb8u1.debian.tar.xz 7f0d5b96120320afcaeafe9d653ca5c39995d158 1004226 exactimage_0.8.9-7+deb8u1_amd64.deb 9cc02fcc8f0a3046508509e93efc096c26fb005c 325398 edisplay_0.8.9-7+deb8u1_amd64.deb e4d7141315d9797dde678901d3cdfe607e052d66 11935626 exactimage-dbg_0.8.9-7+deb8u1_amd64.deb 97af16aa8a2ce7021ef8015e43ca669416e2bbda 613618 libexactimage-perl_0.8.9-7+deb8u1_amd64.deb 78a610d339eab2157861f4aed04db15f4799f993 591716 php5-exactimage_0.8.9-7+deb8u1_amd64.deb ed68dc839b031b83deabaea5abbcf07f670626e2 601304 python-exactimage_0.8.9-7+deb8u1_amd64.deb Checksums-Sha256: ab244b8dfc544e42118740adad3099aa77ce54ab23751e12d08a4dfd3c2f49ff 2525 exactimage_0.8.9-7+deb8u1.dsc dcc62a85434d7e22b64555a9b7cf350b5b2d13940e75a8957d97d5f6a9a0b754 31464 exactimage_0.8.9-7+deb8u1.debian.tar.xz 6948f451d18dc5f9c5689ab3696287f41c63e7141276817784ec950b59fe93fb 1004226 exactimage_0.8.9-7+deb8u1_amd64.deb 8c67cd0fe7953d2825d345814ab2de92bd3454ffb120ab57930bb26eaefda037 325398 edisplay_0.8.9-7+deb8u1_amd64.deb ad599f34ea7eedb5797af843f884a396384b0878c7af8a64faf9216a8fc1e9a4 11935626 exactimage-dbg_0.8.9-7+deb8u1_amd64.deb 19784a270b84066363d6fb64b298c1eefc2b6a538c1203bb1229fa0e57d0f0cb 613618 libexactimage-perl_0.8.9-7+deb8u1_amd64.deb 784f62861d867fbc6e5c937ef60780440b95abe33342cc1325a26ee4695947c1 591716 php5-exactimage_0.8.9-7+deb8u1_amd64.deb 7c8c6e0fb198c755d9f7fa22fc002b25699dbc33845a39e3060ce6bf6a96c203 601304 python-exactimage_0.8.9-7+deb8u1_amd64.deb Files: d78e208175574fe7d49a1615c35b31ba 2525 graphics optional exactimage_0.8.9-7+deb8u1.dsc 199ba1f92c2af7a8050466e11b511a40 31464 graphics optional exactimage_0.8.9-7+deb8u1.debian.tar.xz da92252c85f70f5dc7f540c2a3aaef9f 1004226 graphics optional exactimage_0.8.9-7+deb8u1_amd64.deb fe9196f854b6c8a09ef64752918735b4 325398 graphics optional edisplay_0.8.9-7+deb8u1_amd64.deb fbe6769a4fd17a35f440fb2a5b081989 11935626 debug extra exactimage-dbg_0.8.9-7+deb8u1_amd64.deb 29b8200fece7b4496b4f31bd3a6768c9 613618 perl optional libexactimage-perl_0.8.9-7+deb8u1_amd64.deb 78958e8bcad916b25f4ba5894a6ad65a 591716 php optional php5-exactimage_0.8.9-7+deb8u1_amd64.deb 304b658d9a2b88c1e1989f0c1b0b8610 601304 python optional python-exactimage_0.8.9-7+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJVZNfMAAoJEF2HCgfBJntGgesP/0DHvc3PyB5x0VOle6hJ7T+7 C5f2awRAuBv9Z8ttyAOZ7CU5UgyR7bXyK/0McfOLEHduNGyCxx5YtqO3fzqF0aZa IsfQmJ9QSBTfQKF7F7MUN5Th5iLcoc5tn8We/5WKKjKRjSqqx5XCQqStVmceRXdG qyDFqBeeW9+O2KuB5s7j+x4ixQAaH/y+r93Yee+cgIjW8U6KCY/TpeG8WwqY6Qxw XhUwl0gDvt2QvQKorS8v1X9xGYDMHXE7F87IEGBDo8qbyzQWqeGZPSN2qxAcL8O8 wJarzA0QxJxtaEc5c5Oy0K6d7H4B2qz94sBS+P9WRsKk1RGPDXPG9rdToA/9fCnj 2vecRUevCjL3D8WBTEMrN/oxhCeztbxPyrrtohq6n2y335ZXSeWp/O7aqwpyb5rs SNM2Q9xuRhqlYGIr7wQ2Qbj0ja/6evFMaXIHSRgq1ioS9l31ALzXlypvr8vmriSe WOn25ff+Ba8MwAQrAyipZQ+3teS90Irbcgyxp5V0I/aZzRypsL1YOrm/hOTswwxF wistcQfOTGjSjqcFt5HSN9Q2Xi/gjFtSwdww5DqOxe4H4Prpnz2XB9CGEJAGQbe4 Z4KHTGix3IpJkIcsp6JewbnNtuJ5AZqtw4x4JSp3l/+g0II1ac4AoEZ1njGz7xAq BvtqntoZFanwJX3/evq6 =rCPF -----END PGP SIGNATURE-----