-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 19 Nov 2017 17:09:33 +0100 Source: optipng Binary: optipng Architecture: source amd64 Version: 0.6.4-1+deb7u3 Distribution: wheezy-security Urgency: high Maintainer: Nelson A. de Oliveira <naoliv@debian.org> Changed-By: Markus Koschany <apo@debian.org> Description: optipng - advanced PNG (Portable Network Graphics) optimizer Changes: optipng (0.6.4-1+deb7u3) wheezy-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2017-1000229: An integer overflow vulnerability was found in optipng. This may lead to arbitrary code exuction when a maliciously crafted TIFF file is processed. Checksums-Sha1: 837216440a0ae16a020419f5dd2c591d53eca5aa 1918 optipng_0.6.4-1+deb7u3.dsc 1ad825cf65f01ab415328d5b78201ca7fef372cd 6019 optipng_0.6.4-1+deb7u3.debian.tar.bz2 3c7ec16bd72fd9e8a4ee3eacc14e8923d013dbf3 90720 optipng_0.6.4-1+deb7u3_amd64.deb Checksums-Sha256: 1916e9b880ecee66173e99b26c69252740763e1389ef24b4d53d892ed67aba86 1918 optipng_0.6.4-1+deb7u3.dsc e8c8cda5cf797fddff29d7d134a8d11e1982af36d2dba83ed06b3d432884666c 6019 optipng_0.6.4-1+deb7u3.debian.tar.bz2 89aab0ed571ab0c40da09843d50baff7be924daa2173f7d06ab4a248dc4123e6 90720 optipng_0.6.4-1+deb7u3_amd64.deb Files: fe6f93da91c668a9b79ccc3431e36788 1918 graphics optional optipng_0.6.4-1+deb7u3.dsc 734d6211e26b2a102172c40b058edda1 6019 graphics optional optipng_0.6.4-1+deb7u3.debian.tar.bz2 4641723510b857762e1c951393f4279c 90720 graphics optional optipng_0.6.4-1+deb7u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAloUf61fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1Hk1o4QAMKBkIwwXll3XwM52Jlg+bNTthk6I+3nTRm3 pRBEn/P4Yq423AJEFDGyBIyS+ry42ir+p8YZqqu+ClyIuMx9hFoU3kMNPhdKRY0y 4sNPImnC0Q65Yu+dF8BPOcjoang6iyoPVBPDMvsf25O4er3XQmWxKAjNzU4MTp1P U+x8OV0dlUoGCWuUPI9eXyEYT8p9npq9xVxtqCyIoPw6khfvb9yESpDgNex1SNx9 tPkYuOGWl5jBalOoc0KTlVQQU4Z1BbO/uovzsFQ19RnfJRK/vsyuc86tW7ATLpqo TNM/fVU3H60g08i6d2Lhsxf0VkKejNyRPrXQHVIipYD1HvPgjEJS8dbyN41JAHKb gltB3a/LMrOYq36zSsohuuJ74uQLoa2vxQ2JkyoTnVk/p8CSMj8f8OEzUksmR1CR eB1mJ8oGqRFDdUxFbcLeIBHpvSXY+Np4Y8DhxXxYEilNLeXIL9iUK978Hv2Wx+wi mRnE6AkOxdFhPuDEvVjfygGzJFGflCmjYCYIHkOSEoID/M25XI7eDJDCa1t6XGJC 1dAb7w9yjjdv2PhOJlLtXiBdspwYCevKXlTeSk0/mvogaFRAuUDy24X4WpLaEpdy H1P22Jy63it8Etmp6cQR/O0+JkKDsNgBTRGx2XnHmi4X9NkjKOEAJIW5MINL8dir QzM4WrQO =Hbvk -----END PGP SIGNATURE-----