-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 11 Dec 2016 19:45:54 +0100 Source: libgsf Binary: libgsf-gnome-1-dev libgsf-gnome-1-114-dbg libgsf-gnome-1-114 libgsf-1-114-dbg libgsf-1-dev libgsf-1-114 libgsf-1-common libgsf-bin Architecture: source all amd64 Version: 1.14.21-2.1+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: J.H.M. Dassen (Ray) <jdassen@debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: libgsf-1-114 - Structured File Library - runtime version libgsf-1-114-dbg - Structured File Library - debugging files (basic version) libgsf-1-common - Structured File Library - common files libgsf-1-dev - Structured File Library - development files (basic version) libgsf-bin - Structured File Library - programs libgsf-gnome-1-114 - Structured File Library - runtime version for GNOME libgsf-gnome-1-114-dbg - Structured File Library - debugging files for GNOME libgsf-gnome-1-dev - Structured File Library - development files for GNOME Changes: libgsf (1.14.21-2.1+deb7u1) wheezy-security; urgency=high . * CVE-2016-9888: An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 could be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file. Checksums-Sha1: 3998c123e047c7436720ae3f1dbc740f20ba4b1d 2448 libgsf_1.14.21-2.1+deb7u1.dsc 17981f238f1f8dddb7af01c161bd6a1c4d5e85d2 597463 libgsf_1.14.21.orig.tar.bz2 95a4ca5b0ba1aacc2509f41f928bf403d7aa738d 15399 libgsf_1.14.21-2.1+deb7u1.debian.tar.gz edbd36b80e770d45f21a72602e9c457086a8109e 99408 libgsf-1-common_1.14.21-2.1+deb7u1_all.deb 92e6c77d41941e8a94c41235dfb5a57bae7bbca2 76446 libgsf-gnome-1-dev_1.14.21-2.1+deb7u1_amd64.deb 482cfba6932b8d8b164700709f2d4861190c5777 8364 libgsf-gnome-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb e93ccc8e6d9948acec873d57619f320969ba73ba 67236 libgsf-gnome-1-114_1.14.21-2.1+deb7u1_amd64.deb f08160c74ea39c065a89cc7a4ca0c245c0e59e2c 123834 libgsf-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb 312857274e4566dc0d6487a92fd5509de0a3c7f2 299138 libgsf-1-dev_1.14.21-2.1+deb7u1_amd64.deb 86bd76b20efff7335a7bad21499f3925edcd8594 169776 libgsf-1-114_1.14.21-2.1+deb7u1_amd64.deb 75c9a571b75d48bc8086accc593803bef8ed0c92 89414 libgsf-bin_1.14.21-2.1+deb7u1_amd64.deb Checksums-Sha256: c0723c5f7a97cc894b3fd6a8e7d8f4ec0d8e0f1ae9e8e4a82adb9a6a58ee8396 2448 libgsf_1.14.21-2.1+deb7u1.dsc eef0a9d6eca4e6af6c16b208947e3c958c428b94d22792bdd0b80c08a4b301db 597463 libgsf_1.14.21.orig.tar.bz2 2b1cb04d8271c19acd857205350e8aa201e1ff0603e946db3a8f5043db061202 15399 libgsf_1.14.21-2.1+deb7u1.debian.tar.gz 8eb9c0c7ee8e5241d2e412089e2656191571d2f63a2b76644e92ac36de1ba158 99408 libgsf-1-common_1.14.21-2.1+deb7u1_all.deb 5351fa53199eba6b4c1d4745c9cfc86a4dff0e69593d0602fa3035fd0f109651 76446 libgsf-gnome-1-dev_1.14.21-2.1+deb7u1_amd64.deb a2f7f257e9376bc8e9351ecb45682a30d58b4944e0624ff504947018c2fcc5a0 8364 libgsf-gnome-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb d3436164edfe6fe1e4ef14a608378cf1b570acaff902d37ce7982fe4798424e4 67236 libgsf-gnome-1-114_1.14.21-2.1+deb7u1_amd64.deb d0a5788ee43333704fbce9192fe54d3130f5885f71c6731a89b0594da9d0f6ab 123834 libgsf-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb 71fc16f5d88c737f38501028178fd6ba7b215f7ce3a204104df900ca845ecd15 299138 libgsf-1-dev_1.14.21-2.1+deb7u1_amd64.deb 351054495fd6fa5e24db6630390142ede75de7f5c21723305dfe306e8de321e0 169776 libgsf-1-114_1.14.21-2.1+deb7u1_amd64.deb 4f772f235e80dddb2776a92782d114dd169325ed0b9c03a0ed13bd096af630bf 89414 libgsf-bin_1.14.21-2.1+deb7u1_amd64.deb Files: d1ce0fbc30404b9d1f65ac24ec939950 2448 libs optional libgsf_1.14.21-2.1+deb7u1.dsc 2b702648b853402554c97d75405c60d3 597463 libs optional libgsf_1.14.21.orig.tar.bz2 b094bfce3b6e9456a62c0ab457909fb0 15399 libs optional libgsf_1.14.21-2.1+deb7u1.debian.tar.gz fc28d612ea80800117b3a0123269008f 99408 libs optional libgsf-1-common_1.14.21-2.1+deb7u1_all.deb e49f012c85d0a3376de8ac127e968de2 76446 libdevel optional libgsf-gnome-1-dev_1.14.21-2.1+deb7u1_amd64.deb ec06f7c30edc9b6f1d2835ba2a69eb83 8364 debug extra libgsf-gnome-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb 58ffaa87e5115331205e7643f1240725 67236 libs optional libgsf-gnome-1-114_1.14.21-2.1+deb7u1_amd64.deb 2aa7ddcb9f3d26d9360960c7f6094a1b 123834 debug extra libgsf-1-114-dbg_1.14.21-2.1+deb7u1_amd64.deb 8f941a2ca98c9a3619686043ac64d028 299138 libdevel optional libgsf-1-dev_1.14.21-2.1+deb7u1_amd64.deb 6783535acdec5438a351d58df0704137 169776 libs optional libgsf-1-114_1.14.21-2.1+deb7u1_amd64.deb 38b9ddf7a2d1f988e846ecfe5981dcf6 89414 gnome optional libgsf-bin_1.14.21-2.1+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAlhNoI0ACgkQHpU+J9Qx HlhEExAAkm5hU9unZoCTLK6eaULjnpypW0CXqDloY2akukL64XCdlTeWeQeqZKCc WCLZzOga14JulfiMuGFV8A6fBlyqryyBdTaJU16f3mNKYH9Co6FxW3pZqZqPYUGo E0Ub3SKmssZ0lRhz3lmnSAMAlSseT6lyXUQSteRaHNPXqefHEJHOwRKqLlloSJZU OyPfRaC9R4NVFla1p+FVTKKWCzYLnqu5LclLuUz1vY8tkBIMdZHqf6CQ8jjUw3wu phWC2FWLciIESy4qFnqdDAzJAScRQ/v6sZK+0wGw3LArKJB7PeAMzEIWZYn8A+vY CUw3QaUoG36xG1+xFz3L9V5hS3CAn4Txu1VZm4WTIOSGtKQ5a70puvhWvde0lyRM 4i6g3NTKp7BVcVFDxfC52pEfzNjhnOJLC/m0OLyWytcCIu1fXsVWFpcuTuwOCWWe gOjB3Jj6GXHpnVHw3AVB0ge5mMnE6mJQJMqr9O4/UXPrqco/lKo5VRvAUEyFh4Gi dXYEVru8EHOG0SP1fUI63SGKkvsjHbnp+CGwI+HZg/fqlOWG5tvXPud452Bc5YeY dIOZW2jhIseuU9JVTme4b8R7j7mGbE44y2VihoUR1/YCb8rELoNF1uvN6qalxIeW 8OMcP35owLMTyFg5aXDJ6BDzUNaTG2t9LhVQ4kk9ili0EzQCPTM= =caeY -----END PGP SIGNATURE-----