-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 14 Mar 2018 14:36:25 +0100 Source: exempi Binary: exempi libexempi3 libexempi-dev Architecture: source Version: 2.4.5-1 Distribution: unstable Urgency: medium Maintainer: Michael Biebl <biebl@debian.org> Changed-By: Michael Biebl <biebl@debian.org> Description: exempi - command line tool to manipulate XMP metadata libexempi-dev - library to parse XMP metadata (Development files) libexempi3 - library to parse XMP metadata (Library) Closes: 892782 Changes: exempi (2.4.5-1) unstable; urgency=medium . * New upstream version 2.4.5 with various CVE fixes. (Closes: #892782) - CVE-2018-7730: fix a buffer overflow in the PSD parser. - CVE-2018-7728: fix a buffer overflow in the TIFF parser. - CVE-2018-7729: fix a buffer overflow in PostScript parser. - CVE-2018-7731: fix a null dereference in WEBP parser. * Enable all hardening build flags Checksums-Sha1: f0277abe5eab179b9d1fd70faf3771c14c6d2131 1953 exempi_2.4.5-1.dsc 9e22935ab834f556a3e9e00c3a871a773dc08db9 3615134 exempi_2.4.5.orig.tar.bz2 8b3e161726dc67e6b7d5e90e78c3fc61cc70bbf8 9684 exempi_2.4.5-1.debian.tar.xz cbe6ba36942163eabbf2d2f99e55b2889271253b 5520 exempi_2.4.5-1_source.buildinfo Checksums-Sha256: 825346603b5305f4d27d8ebd521c2c46f65fbc1cb999649380e8fe31daa76a1f 1953 exempi_2.4.5-1.dsc 406185feb88e84ea1d4b4251370be2991205790d7113a7e28e192ff46a4f221e 3615134 exempi_2.4.5.orig.tar.bz2 3bb107fe15cf24686047b0c4da377ee3a4dfdd876c3f56f5d1e0ad0aaf66b7e6 9684 exempi_2.4.5-1.debian.tar.xz 97ad3e6d668f5f2b6e229f721c5c001a560f789b9be86a6add14552d6dcb6fd9 5520 exempi_2.4.5-1_source.buildinfo Files: ce56fbf9ce0a9a791d2a9031eaf059ae 1953 libs optional exempi_2.4.5-1.dsc bb7a06ef8bbf79a59e32562b198daefd 3615134 libs optional exempi_2.4.5.orig.tar.bz2 fecd326275819cfb353238fd2d8a5228 9684 libs optional exempi_2.4.5-1.debian.tar.xz dc5c37fd081897fe64ec48ad47a47d63 5520 libs optional exempi_2.4.5-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEECbOsLssWnJBDRcxUauHfDWCPItwFAlqpJXMACgkQauHfDWCP ItzFLA/9Gl+347JxuKE0BtcmpU/BMPh9x5o4i7K9V2YLknyX/QHoOU/g0fb5mRkC /b8A9oXOYnB6RUMRfElAcyTL1XkzuFlAiVeLiQHn8LAVaVkqm6sQ387MHbvHL6Sf 8B74y1keENoxraQUGfXq8Z7ogYaRNwdQqxpwkDnRYgwJo7kqbiuYGYELQovbjSfw hGPB5IZ2HpZN97Ha/v+qTtcmPVkCHOistqhloeRiMD54P/C2JFQMLYGAg9wWPNnm /DY59X58JxabF//I1W8i5ej1gITedxMd6v7daHvkppbUF1ONootxDIVujdno6GW1 Upc8wLtzhWx1F7KsG5gtjRsifmMoGDjUk7KOn+musvUaue8u+KwDbn6ZNe/crJwS T18sKv4SkP1kjR4to1ZcLrWgv2618lKUufm7014UfvswbqFj8w0YZEoUFcC6G/f+ Wd+kIhm6609TugZ6RpV4eqt+W8x7F3AL32YgakqJk/Cx97UiI0Die1IRaqa0S1Mx TjVR0DIQaJxM10SqEIN2MXqjJE28bwntszGZLGjSstlIfYdC+42EVoWwiCS5NbYA +TvkrECuUe79CmG+yaceBugEV//Bmo7KXdZshqJNpaKJGKS+AEOzJQzmfDzLVhbg IWdO/U4Ohf99uKDA2wYBVgIwNV6v57UblQ22lwb8gQyCxAOm8K8= =MQjI -----END PGP SIGNATURE-----