-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 27 Oct 2016 00:35:40 +0200 Source: libxi Binary: libxi6 libxi6-udeb libxi6-dbg libxi-dev Architecture: source amd64 Version: 2:1.6.1-1+deb7u2 Distribution: wheezy-security Urgency: medium Maintainer: Debian X Strike Force <debian-x@lists.debian.org> Changed-By: Emilio Pozuelo Monfort <pochu@debian.org> Description: libxi-dev - X11 Input extension library (development headers) libxi6 - X11 Input extension library libxi6-dbg - X11 Input extension library (debug package) libxi6-udeb - X11 Input extension library (udeb) Changes: libxi (2:1.6.1-1+deb7u2) wheezy-security; urgency=medium . * Cherry-pick upstream commit 19a9cd6: CVE-2016-7945, CVE-2016-7946: Properly validate server responses to mitigated out of bounds accesses and endless loops. * Also cherry-pick upstream commits b843fe1, 43904c9, 7ac03c6c, 4c5c8d6, which fix some issues in the above fix. Checksums-Sha1: c93722589b8d07c2099e3ad8ba156497351d11d1 2250 libxi_1.6.1-1+deb7u2.dsc 1ff0e04dda3f3441c6f331916be8b4f91178e2bb 25926 libxi_1.6.1-1+deb7u2.diff.gz d0967ca4d6020d47975a55a4b51484286beb3765 76384 libxi6_1.6.1-1+deb7u2_amd64.deb f0f1a02384f1963b8452addbd5b9f1610298bca8 23650 libxi6-udeb_1.6.1-1+deb7u2_amd64.udeb 3151383e56d5f0a25ec5b50355ecae8d4200379c 439520 libxi6-dbg_1.6.1-1+deb7u2_amd64.deb 8f80eedbd65ac4f6244516f24371bed35dd345cb 251260 libxi-dev_1.6.1-1+deb7u2_amd64.deb Checksums-Sha256: e9d8ee1c12111a3fc06fa702968bd9c5b3110e7d08a95cad191b3d27c8b4f5ff 2250 libxi_1.6.1-1+deb7u2.dsc 3196b15f81d1bb20be32c0ffb31e3e4f32827c638c8027dfd7826506a1e9a9df 25926 libxi_1.6.1-1+deb7u2.diff.gz 26fd1339c188d586e420963a6e4ac6fa31e5919cf245de6363598da1824e696b 76384 libxi6_1.6.1-1+deb7u2_amd64.deb a0462e4610e884c898eb756a69707400d6080e4b9c929feddf8b3a8f77206616 23650 libxi6-udeb_1.6.1-1+deb7u2_amd64.udeb c068086e6dfda982e20bb4f6caded4fd09f9f7d9675294033684135acd812082 439520 libxi6-dbg_1.6.1-1+deb7u2_amd64.deb c3fd7965c0e4822d601dead586c3f9387e23ad8044de565a23c72b2bed821f86 251260 libxi-dev_1.6.1-1+deb7u2_amd64.deb Files: ee26167ba65a8a2feb166b8c8b0d2afa 2250 x11 optional libxi_1.6.1-1+deb7u2.dsc a788a6b1195cbd1c6548f2fabcf3c51c 25926 x11 optional libxi_1.6.1-1+deb7u2.diff.gz 526311f1ddb79b03666de4caf9ca318b 76384 libs optional libxi6_1.6.1-1+deb7u2_amd64.deb 7969fc0ee32e5ca6a5a813f666c8edeb 23650 debian-installer optional libxi6-udeb_1.6.1-1+deb7u2_amd64.udeb dbaee507bf52972d40a87da3562da812 439520 debug extra libxi6-dbg_1.6.1-1+deb7u2_amd64.deb af0a7b6382e7f6a85a0d51610cf58def 251260 libdevel optional libxi-dev_1.6.1-1+deb7u2_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJYETYzAAoJEJ1GxIjkNoMCL0AP/3vHKEEjRo4I6w8i5frvUOHx htAM4SllLy5nTax2Y86SnqCkPQ5IXomawSCnBx4/BWNADDO8RvRLaxp62JEtqAaj kpeWfrd9qU+8kEbTvmXV17pd+wOIByNFgkZHnY43JD+pabhzC57m9LQ9dnTs6XXa 5VNDLLn8Igc+TKkeCLvYIJSLtlZeOWP1XfHdPtGnsEFSQ7ahHjekQuk1SAMTdwkL IUXPaD2tAv3olda475JyJ6ZS+Peik1ZRCRV1ZxK3eMWIh5cUcD8V2O73o7OuAjgA AdhZ7TktgyPMg6wIW5bH2rXDSWu6g3/jnf0dl8yf/RRZ5itDeNOIX0cskavNOyOW AKiEXR1pzNCNtamUwN6zOwir2YYH4wbxy+sG0FzHdHhjbxs3NxJxn/JpR+G9voZ/ ncqUNymnw+b6f2Rhkg4tE0remCQKZQeE9d7y0Cfs638q8CdT8XipswTuH5UJFhmJ h7mX1CVvBB3GI9ygPnR7o4vWPL1a83viWHVaQzhB/o2KmFGeRPQVLuxJ1zzDGyul ubKi6OV84jm8zCBhU3s4o7nx4nrdPL4p7J8HLpA8cDlQtTs04jDbktdBvX2Yg3nA 16foHwTfUfxofeo2s+0u9RxbM/pJNoAynhKHh8ZzIKPUmTKvna6UGrcsnDh3VWdd 6Ftwnhp1teRe2oaLcC7E =1aOl -----END PGP SIGNATURE-----