-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 13 Jan 2017 17:25:31 +0100 Source: ming Binary: libming1 libming-dev ming-fonts-dejavu ming-fonts-opensymbol libswf-perl libming-util python-ming php5-ming Architecture: source amd64 all Version: 1:0.4.4-1.1+deb7u1 Distribution: wheezy-security Urgency: medium Maintainer: Stuart R. Anderson <anderson@netsweng.com> Changed-By: Balint Reczey <balint@balintreczey.hu> Description: libming-dev - Library to generate SWF (Flash) Files (development files) libming-util - Library to generate SWF (Flash) Files - Utilities libming1 - Library to generate SWF (Flash) Files libswf-perl - Ming (SWF) module for Perl ming-fonts-dejavu - Ming format DejaVue Fonts ming-fonts-opensymbol - Ming format Opensymbol Fonts php5-ming - Ming module for php5 python-ming - Ming (SWF) module for Python Closes: 843928 Changes: ming (1:0.4.4-1.1+deb7u1) wheezy-security; urgency=medium . * LTS Team upload * Fix security vulnerabilites (Closes: #843928): - listswf: heap-based buffer overflow in parseSWF_RGBA (parser.c) (CVE-2016-9831) - listswf: heap-based buffer overflow in parseSWF_DEFINEFONT (parser.c) - (CVE-2016-9829) - listswf: NULL pointer dereference in dumpBuffer (read.c) (CVE-2016-9828) - listswf: heap-based buffer overflow in _iprintf (outputtxt.c) (CVE-2016-9827) - left shift in listmp3.c (CVE-2016-9266) - divide-by-zero in printMP3Headers (listmp3.c) (CVE-2016-9265) - global-buffer-overflow in printMP3Headers (listmp3.c) (CVE-2016-9264) * Enable tests during build * Enable all hardening build flags * Build-depend on dpkg-dev (>= 1.16.1~), it is needed for hardening flags Checksums-Sha1: 7ad802032ba6619e6e9b77655f5995188899bc31 2348 ming_0.4.4-1.1+deb7u1.dsc d2a684e743f30ff7416580904a3eb1c47e0ecf52 14838911 ming_0.4.4.orig.tar.gz 37157256d97177c8d95b37054caf3ab9cb262662 23826 ming_0.4.4-1.1+deb7u1.diff.gz fe9477f6c757d63a3710266c0674c32b23739d98 186058 libming1_0.4.4-1.1+deb7u1_amd64.deb 66180892b9e7f6456cdedf576d4de9c39ee5e2a1 241010 libming-dev_0.4.4-1.1+deb7u1_amd64.deb 676d41fcf6e690ccd3c9029d8ad2b493a0e1f412 212134 libswf-perl_0.4.4-1.1+deb7u1_amd64.deb 4c23d6d47b9827f6285b0cc49d36ae59a08092e9 711784 libming-util_0.4.4-1.1+deb7u1_amd64.deb 3cd6d86b5189991f6c9610ecc6f117a8e204036c 166342 python-ming_0.4.4-1.1+deb7u1_amd64.deb 9fc217a66f1b842d435bcc5216f1dc4fec6b0261 54004 php5-ming_0.4.4-1.1+deb7u1_amd64.deb daa77b25f3e2f6a41cb5c86b57d9115ae23e28cc 36362 ming-fonts-dejavu_0.4.4-1.1+deb7u1_all.deb 2d2767ccb002d9f34f735ff0c3b8677d785b392b 5392 ming-fonts-opensymbol_0.4.4-1.1+deb7u1_all.deb Checksums-Sha256: 76ab1e0a1aabcaabeba085158d6edc86dec0cd4c7ce78ac0c6957bfd7404d45b 2348 ming_0.4.4-1.1+deb7u1.dsc a9ab92d64cefdf42780c52b71e21e632f5bea211824c99c23dac9761003d969a 14838911 ming_0.4.4.orig.tar.gz 86eeba5118c46850c0834c241bc43960a7c9479c9a8c0ec7c7ed189a568aa569 23826 ming_0.4.4-1.1+deb7u1.diff.gz a48446850fcaa535aa87fa2821f5d295362962696507f886fd6d7836575e0686 186058 libming1_0.4.4-1.1+deb7u1_amd64.deb df0da41acb076060448b225f3da8d82d3a49ddb5d020db932860c30b51803d91 241010 libming-dev_0.4.4-1.1+deb7u1_amd64.deb 93e20beb9e5ae18c40a0dc7bb5ba591c91da74beba50d037a00c6e577c18f93d 212134 libswf-perl_0.4.4-1.1+deb7u1_amd64.deb b6817b9551174dcd97d3ee3ef25d56f83eb750ad46a9e2c6a3e113e1882b68fa 711784 libming-util_0.4.4-1.1+deb7u1_amd64.deb 04ebd690541a592e7889744b92437941dd75b7e4a0a5f62c681c679c2a5ad366 166342 python-ming_0.4.4-1.1+deb7u1_amd64.deb d9ff2d851e50978c8dc4974215af03806570bf1cf4bbc4ea5182c8047640ef24 54004 php5-ming_0.4.4-1.1+deb7u1_amd64.deb ed3d383ada53659d84f9e17336ba75495619297144072f1bbf18200a43e6ed39 36362 ming-fonts-dejavu_0.4.4-1.1+deb7u1_all.deb c800d4b51ba158fe1e59a7f6f01ac7c52ec6bce4b07233ff912f7b6deec60b6d 5392 ming-fonts-opensymbol_0.4.4-1.1+deb7u1_all.deb Files: 00390d2e872049d301cecb5b4375bf6e 2348 libs optional ming_0.4.4-1.1+deb7u1.dsc d8e75796f3ee9b9a0b582787283435cb 14838911 libs optional ming_0.4.4.orig.tar.gz 958bcdce220427772d876bd1bfaf0f5c 23826 libs optional ming_0.4.4-1.1+deb7u1.diff.gz 45b47d3f885e39ae166f95da11789ddf 186058 libs optional libming1_0.4.4-1.1+deb7u1_amd64.deb 78d911753f2128507c5a507228d674fc 241010 libdevel optional libming-dev_0.4.4-1.1+deb7u1_amd64.deb 4d4df5e9fb84088b105150110c124c4f 212134 perl optional libswf-perl_0.4.4-1.1+deb7u1_amd64.deb 3cd537465bed1e8cb5bd43d202248aad 711784 devel optional libming-util_0.4.4-1.1+deb7u1_amd64.deb c1c197ce34d4129050ee9a2ab5f91ac9 166342 python optional python-ming_0.4.4-1.1+deb7u1_amd64.deb 383c1c262fb3408338b7c2fc3d169e8d 54004 web optional php5-ming_0.4.4-1.1+deb7u1_amd64.deb 66100d8a50508b9127fe63f4bf074bda 36362 web optional ming-fonts-dejavu_0.4.4-1.1+deb7u1_all.deb d6d7d6408ac7d890cce02098c2d7800a 5392 web optional ming-fonts-opensymbol_0.4.4-1.1+deb7u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJYieobAAoJEPZk0la0aRp9ecIP/RZQUb+CIXNsrYejXUng+FHU QcsUX1EH4D1pCZREy0q+nehoJZjruG8yuKZ3pBc06nzNhGhcJXQ91JpCJLby+1iT 0pMb5TBed/EA711vvNwYmAnwBBnOHRUjVNamcge86i0cejYFyf69Ss4REjtVyZDi 28jY0acKPWjCsgMm1Nzzi8Il65PvOJ3JDOus1KiMvssxtt+5H8fkQyvE0JH47ZMX dekT7zcO0+cnq5fWOQ+ikE1O5m57+N9a+IyU3EeT2rpv5LbMXHoOZlRFeOfeyhDH 9oeRUOUGWNmvx3o2cRVG5cMt7h/TDw/3pPSw4dNHlsGMqpgQpZodYprdKYhHYLfp Fsvw2ALU17ywwYYddSDKVmmbxhOjYNQop8CXsJ/L6gIqJ9z+vdYasVd15Tk6Sse5 vAh3f/EHW2IG+MadG/vmUpuclj5kOdGfI4AHwFZeHqftzlpvb2swsf9jeS/CikwT VGvRUnhzf8nU0JJ5xEikhnFuuCCrDbBzraBuU6gEV7JUNPPRvZ4JK7CRfL9keoc0 tA+AhSvwM6aBQmr8vfg1ZmB0KNjqjVfxSrp1f3pETNUgfkaC0qt6FjIta9cG5yXO toYtM5oMrbZE8jNxXuCc2FiliJoXixb4161j/3/+raS1PH3/OCeIewcv941PgZ0J KUBLujKRekzZuGzMogfC =t36v -----END PGP SIGNATURE-----