-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 12 May 2016 09:16:32 +1000 Source: librsvg Binary: librsvg2-dev librsvg2-2 librsvg2-common librsvg2-doc librsvg2-dbg librsvg2-bin gir1.2-rsvg-2.0 Architecture: source all i386 Version: 2.36.1-2+deb7u2 Distribution: wheezy-security Urgency: high Maintainer: Josselin Mouette <joss@debian.org> Changed-By: Brian May <bam@debian.org> Description: gir1.2-rsvg-2.0 - gir files for renderer library for SVG files librsvg2-2 - SAX-based renderer library for SVG files (runtime) librsvg2-bin - command-line and graphical viewers for SVG files librsvg2-common - SAX-based renderer library for SVG files (extra runtime) librsvg2-dbg - SAX-based renderer library for SVG files (debug) librsvg2-dev - SAX-based renderer library for SVG files (development) librsvg2-doc - SAX-based renderer library for SVG files (documentation) Changes: librsvg (2.36.1-2+deb7u2) wheezy-security; urgency=high . * Upload by the Debian-LTS team. * Fix CVE-2015-7558 / CVE-2016-4347: stack exhaustion. * Fix CVE-2016-4348: stack exhaustion. Checksums-Sha1: 07546fa2363b060e649b0194e977244a70d08db0 2768 librsvg_2.36.1-2+deb7u2.dsc 1084015373e90ff8fccbae4b27ee778bbdf14d40 506184 librsvg_2.36.1.orig.tar.xz 9128c8165b6431e2f1a56280b8cbc89dad537677 23005 librsvg_2.36.1-2+deb7u2.debian.tar.gz a0c0b7bcfdf22d7df9162a2bab806a2ff8857744 177912 librsvg2-doc_2.36.1-2+deb7u2_all.deb aefc82b502f501d3e1c80c48c1dd7756b19051cb 252164 librsvg2-dev_2.36.1-2+deb7u2_i386.deb 29eb49a19f495ef6f5229922837a3039e926bd1c 242008 librsvg2-2_2.36.1-2+deb7u2_i386.deb d20e4fa0103cf97618ac61bacf340707df34cec3 162028 librsvg2-common_2.36.1-2+deb7u2_i386.deb a86f321d0e2fbc391c542cd2b671c05944a3808d 442010 librsvg2-dbg_2.36.1-2+deb7u2_i386.deb ff2aade55f05c2b8a14282e85100d9dd9bed2f29 172792 librsvg2-bin_2.36.1-2+deb7u2_i386.deb 0187eb67e8f8447123dad258fba1dd75eb32c8c2 160458 gir1.2-rsvg-2.0_2.36.1-2+deb7u2_i386.deb Checksums-Sha256: 9e71dc19bfbebb7de460af97c16daa6a2bf9a27227bce9a251814209861448e5 2768 librsvg_2.36.1-2+deb7u2.dsc 786b95e1a091375c5ef2997a21c69ff24d7077afeff18197355f54d9dcbcd8c5 506184 librsvg_2.36.1.orig.tar.xz fb8ceddfd8cef8bd2c05bb69cc041a924d335b25454fc9adf83b51046b0a6a20 23005 librsvg_2.36.1-2+deb7u2.debian.tar.gz 5c2deb9fc024aec426e5ed0a918443a06308d9228c5e0c83172bfcb3803b001e 177912 librsvg2-doc_2.36.1-2+deb7u2_all.deb 81c874606f66bc4945b7a8863e695d6fbc1e372861622a58ca4849887c7a984d 252164 librsvg2-dev_2.36.1-2+deb7u2_i386.deb c7839aa28ea1f50b99bc7c97abf2b43fbd1790ba5bf360d4a7f5a9b986a03a8b 242008 librsvg2-2_2.36.1-2+deb7u2_i386.deb 62d579613d36555363d6f828a3875a706e9689eabe61aa8e68173ea465fe545e 162028 librsvg2-common_2.36.1-2+deb7u2_i386.deb 7076bfb16d36ec168ade6d48b6524a5f62de58a431c919be3acc9495c7e8beac 442010 librsvg2-dbg_2.36.1-2+deb7u2_i386.deb 33abd2d85cfc56dc918e8de51a8734ce84c2e944ecefa9db4c95d15bd22feb3c 172792 librsvg2-bin_2.36.1-2+deb7u2_i386.deb fcedee6e4ddaaa34b8e9c1b68f78079751fcad5142264a9e515198ac8146fdda 160458 gir1.2-rsvg-2.0_2.36.1-2+deb7u2_i386.deb Files: d1187fb68033565ecc7d7fac3859388a 2768 libdevel optional librsvg_2.36.1-2+deb7u2.dsc 89d483f30a7c77245b7ee02faaea5a5a 506184 libdevel optional librsvg_2.36.1.orig.tar.xz ab18214d5b840df7f01a5b93527cd27f 23005 libdevel optional librsvg_2.36.1-2+deb7u2.debian.tar.gz 6a61cce739a613aec0b8589fc9de9330 177912 doc optional librsvg2-doc_2.36.1-2+deb7u2_all.deb 527d551392c1260dbb112e5ab7608b30 252164 libdevel optional librsvg2-dev_2.36.1-2+deb7u2_i386.deb 8cc88c791c7d8282751fbfa969e2211d 242008 libs optional librsvg2-2_2.36.1-2+deb7u2_i386.deb 6bddf37e898cb220a892198a91f1400a 162028 libs optional librsvg2-common_2.36.1-2+deb7u2_i386.deb 4b96c0c2ef20c99a48d25a5155f4dfce 442010 debug extra librsvg2-dbg_2.36.1-2+deb7u2_i386.deb 237ed374b44dd73e1d8b2453509d994e 172792 graphics optional librsvg2-bin_2.36.1-2+deb7u2_i386.deb 022630c052dbe8ca1361a8994d552f45 160458 introspection optional gir1.2-rsvg-2.0_2.36.1-2+deb7u2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJXOXZGAAoJEBeEV3+BH26sCpEP/3wl1Fj/8FPwWMrYt0FDl9V2 +3/TifH9b77uuhYBoGDJM2nDcvuJsG45DoRGm3k9uCJK3qFSo8dNYyi4bmNU5Nvf AL4VyOGTv3CK+lfa4N6tipowUK++BIoLCfI1HCTK/vQ7zGOX15zkdPA/UYMwoztA 4wMzlWfrg6/dUzXLJGJSzGhErM5LMia8YUNANTHe+TuJcFwGZk6VDcX+IUvnmpkd Xf5aBoWT76LeH9gIjQTGFAf5+pmuxbIpSxQcwPr+cI+0QkyAj+WKLJW+1FbbnDb3 207GKPoZokiSA7lLDnIjZbjt8WLgaJdGNqz5QeLABxBg3JGSzPGBFznujH7F/htK 8C/rkR9YJJ9fgFVe9Wiv/bYPYpBEFmmjXUyWX8HUbzhv8y5XTwv7swanU4xjPBHx Wf3qu4tlbzMyxrFQ2aTZxZatWkooMyPkGK5xGb2wcgfmGBFm84KpOVNkRy1kpvaE VqLuAPRC8WmJIOqHEU6OeZdOrTwbtEB0W+mxi0TVhbWw1W6f2br7/8a3QJWM7djv 1/po/ZJiB09YG8Tf7Fg84Y7y/oYSOis4odQK/xL+dhZ0lf2pjjWcRa18poGvsY7K gQQ7FRYuU8/vw8e324aai8Ux+BUxz1sQVo5PGFu0W03+WFjJoKU93ApxBagXoEln Lmfc0L9f7uQKQ48BrOcN =rIOX -----END PGP SIGNATURE-----