-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 29 Jun 2015 09:42:27 +0200 Source: t1utils Binary: t1utils Architecture: source amd64 Version: 1.36-1+deb6u1 Distribution: squeeze-lts Urgency: medium Maintainer: C.M. Connelly <cmc@debian.org> Changed-By: Santiago Ruano Rincón <santiagorr@riseup.net> Description: t1utils - Collection of simple Type 1 font manipulation programs Changes: t1utils (1.36-1+deb6u1) squeeze-lts; urgency=medium . * Non-maintainer upload by the Squeeze LTS team. * Fix CVE-2015-3905: Buffer overflow in the set_cs_start function in t1disasm.c allowed remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file. Backported from jessie, thanks to Niels Thykier (upstream's fix is more complex). Checksums-Sha1: fc3c4aa9080969cd7f5eebdcc93b7fb504dcbb59 1627 t1utils_1.36-1+deb6u1.dsc bbc64e40da9c2ecd459ea6d0223369decce94693 7118 t1utils_1.36-1+deb6u1.debian.tar.gz c3dee01c2f55ebb3879ac21c5aa1fd3ccc3a40d4 134808 t1utils_1.36-1+deb6u1_amd64.deb Checksums-Sha256: 92d5273e5f6a41c11353dc329721182c70ecfe47a9a3fe635222742722b1cfaf 1627 t1utils_1.36-1+deb6u1.dsc 90c0431756a7a8101c1c9701d517ef0eb9f0cbf479acc57232f5de1fa83fafed 7118 t1utils_1.36-1+deb6u1.debian.tar.gz d86e0c41cd1d684fccd35fcd0ced930a2691fe6b9b7f36ae0943611a52dd5f86 134808 t1utils_1.36-1+deb6u1_amd64.deb Files: 66cc1688b2a25db5df222d4bc78a0466 1627 text optional t1utils_1.36-1+deb6u1.dsc e72d12ed96d7b388289b5b492d92da96 7118 text optional t1utils_1.36-1+deb6u1.debian.tar.gz bdb4d5cd20392dfac8151fcd2d43727f 134808 text optional t1utils_1.36-1+deb6u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIcBAEBCgAGBQJVkPrpAAoJEN5v/bjI1ki9Zf4P/393/INBZa/VW9Qio7bf4SPE iX6uYKtRf7ZKRJm6l9f/kPhe/pX1diKFPAjxGND4rKI6mPd7n3cuCBOVCpTXeWwP oJ3wPz4gj3oH0Ydu009U7IiLaENiwleJhNuRPS/UHEA3t6qDEIppGanVpYmlk0P3 E8ghKtfC6P8Ug2dJrG/FXC1QBkSeoXf70LIjhmKfiT5DBtFz5D4VuV31dnTTBo4W +l8N87/mcGqpGOUNUfZzbUwMlorGPwgq3t9bRuTXZ6L5i8uSVRQcyNhwJAnh3F7l vWW0hFfnyoX6J+OQUTjoQflJZ3QGrkKkj/7a5QjM8LqzsnzYRXv4w5B08Y/Pb9UB 3lBtQjPF6rmrVO5kiBK5W1bWiWG9UbQJQAeFAJC5dhtNgiQgQN0bCbQ8nTPcjeBe VaWkaEPDxZs+1pWeQNoRUC4gaH8rcDfMuBNe7buOgvdJdgCh1RlYvs4HDxjxZmzC d2mo4SJfbOVAn2sIPmNIQvOhAdOF8ObQBR11FeVccJFabEpbI5st1z5XTL68EzJI 0jlX/w84cNZbyBKSxrYKVS9Q1khcxdcPRAPOzC6rViRporVc34xStoH7j5whDXNf /MSKnf6uOLfvYaJD2XcM5ZPsXV96K3m/VU6FT4pibroly/xxioymPpcWAhLQaqGs shfPmLDn/47AEWbpsROj =kf5Y -----END PGP SIGNATURE-----