-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 06 Mar 2016 15:09:28 +0100 Source: jasper Binary: libjasper1 libjasper-dev libjasper-runtime Architecture: source amd64 Version: 1.900.1-13+deb7u4 Distribution: wheezy-security Urgency: high Maintainer: Roland Stigge <stigge@antcom.de> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libjasper-dev - Development files for the JasPer JPEG-2000 library libjasper-runtime - Programs for manipulating JPEG-2000 files libjasper1 - JasPer JPEG-2000 runtime library Closes: 812978 816625 816626 Changes: jasper (1.900.1-13+deb7u4) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2016-1577: Prevent double-free in jas_iccattrval_destroy() (Closes: #816625) * CVE-2016-2089: matrix rows_ NULL pointer dereference in jas_matrix_clip() (Closes: #812978) * CVE-2016-2116: Prevent jas_stream_t memory leak in jas_iccprof_createfrombuf() (Closes: #816626) Checksums-Sha1: 2a5b39408c15feffff975d5b349ce9a419cd287c 1878 jasper_1.900.1-13+deb7u4.dsc 485ed72f72da1b2092fb4f4217580f9a34630fc3 34913 jasper_1.900.1-13+deb7u4.debian.tar.gz b804f5eeb5e6cb00f2436d133145238007a12eaf 160230 libjasper1_1.900.1-13+deb7u4_amd64.deb 22e63a35ee293bf2c37ec271e31ec6d603b7c308 569330 libjasper-dev_1.900.1-13+deb7u4_amd64.deb a6501e43744c1ea26fcac1d73a6a50bf7bca263a 27404 libjasper-runtime_1.900.1-13+deb7u4_amd64.deb Checksums-Sha256: 45322a04fbbdfdba0f58747417fd92bf07e7ffcf612695c095c02c2b87a21cbe 1878 jasper_1.900.1-13+deb7u4.dsc 61049f1047774db9abdc399dcc8c8eb153bba15dddc81c1b95e7e973c6765c6d 34913 jasper_1.900.1-13+deb7u4.debian.tar.gz 8c92d4be18de78060fa888d506c290dd5162397979d858f318508c10225e6660 160230 libjasper1_1.900.1-13+deb7u4_amd64.deb 32a83763556a28ca0f2dbaff434cd0710ac68952a316271213e028cdc19c4eb9 569330 libjasper-dev_1.900.1-13+deb7u4_amd64.deb 98118f1e51119f3cf8cdc892b021c1809e830ea56873eff16a59ed6868489490 27404 libjasper-runtime_1.900.1-13+deb7u4_amd64.deb Files: db90675529886eb7523042aa6733604f 1878 graphics optional jasper_1.900.1-13+deb7u4.dsc dcde5273ae8c4104535af22256f1fd85 34913 graphics optional jasper_1.900.1-13+deb7u4.debian.tar.gz 10f4a6e7ded8f06075694d588621a69a 160230 libs optional libjasper1_1.900.1-13+deb7u4_amd64.deb 8aeb17922bcf60467da1f707dbc866b0 569330 libdevel optional libjasper-dev_1.900.1-13+deb7u4_amd64.deb afa8d77c698a502158a2d8c4fa1b3da7 27404 graphics optional libjasper-runtime_1.900.1-13+deb7u4_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJW3DrJAAoJEAVMuPMTQ89Ej6kP/iFcRx8a0D5E/u7WKCYx7bYM BrTuk51VKzMkMkd4P9mT2drmSMpBBQSslXIiQF+qfexarvpljdabSaBlzwo6dIeS eT5q6yQxyYQRCjIkLz/au0Q9fkWFhU4WjDGD81j2BpY4DNHQmTcD1FUlORUmBFqC 08VMWDMMX5FQNqdKDeEuZS6QmjgiFgO1hw6oQ7OJWFqtctSbtuq3Wx+YRq1FibOz t6r/0DOMQZbgLlhWmlBKzBPmfuId3m02tOOqXOFGsF23jM1PE7aC12FSMOTVMboL iGTWMSf3HAjX69c52wOZx1fMNILODjEl4US6QiRueDGOB6uw1okkCXVtcXazWIF3 ofkD1W7Ph0sm9ReeO9ooHphUtSnURSbZyhavCXGYhehW3PGnDKdbAw5XkcYHZAlR +Q5qPtXwKcDe6pmIT67GjyIAmHR3MTIc3ORAVOoVB7kKsug87E6SFLd2G+TknMn3 wJXk18VhwcWet25EJCmaUFmp36KowDxEt2AJtr4/ilzORji4IcBcoBVTVCOKMpU6 xSrrZX9the6bBwvoqwOAOwfBCed7gGDqMUasMawklINpDwMXQjLJFEftFAiQ7bzR oMMWXLy2DvZRXl0DFLjz/LkDPxgL7AEJNOegL+tVQNmkU6WLLMHsjBzjwHc0GhvP C3vJ6q7Z4KAbZeFPHdb+ =jfRU -----END PGP SIGNATURE-----