-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 25 May 2018 19:21:07 +0000 Source: graphicsmagick Binary: graphicsmagick libgraphicsmagick-q16-3 libgraphicsmagick1-dev libgraphicsmagick++-q16-12 libgraphicsmagick++1-dev libgraphics-magick-perl graphicsmagick-imagemagick-compat graphicsmagick-libmagick-dev-compat graphicsmagick-dbg Architecture: source amd64 all Version: 1.3.29+hg15665-1 Distribution: unstable Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Description: graphicsmagick - collection of image processing tools graphicsmagick-dbg - format-independent image processing - debugging symbols graphicsmagick-imagemagick-compat - image processing tools providing ImageMagick interface graphicsmagick-libmagick-dev-compat - image processing libraries providing ImageMagick interface libgraphics-magick-perl - format-independent image processing - perl interface libgraphicsmagick++-q16-12 - format-independent image processing - C++ shared library libgraphicsmagick++1-dev - format-independent image processing - C++ development files libgraphicsmagick-q16-3 - format-independent image processing - C shared library libgraphicsmagick1-dev - format-independent image processing - C development files Changes: graphicsmagick (1.3.29+hg15665-1) unstable; urgency=high . * Mercurial snapshot, fixing the following security issues: - use of uninitialized value in IsMonochromeImage() , - divide by zero in GetPixelOpacity() , - write beyond array bounds in TraceStrokePolygon() , - use of uninitialized value in format8BIM() , - assertion failure in WriteBlob() , - out of bounds write in TraceEllipse() , - memory leak and use of uninitialized memory when handling eXIf chunk in png_malloc() , - floating point exception in WriteTIFFImage() , - leak of Image when TIFFReadRGBAImage() reports failure, - potentional leak when compressed object is corrupted, - floating point exception in WriteTIFFImage() , - heap double free in Magick::BlobRef::~BlobRef() , - direct leak in TIFFClientOpen() , - indirect leak in CloneImage() , - direct leak in ReadOneJNGImage() , - heap buffer overflow in put1bitbwtile() , - use of uninitialized value in SyncImageCallBack() , - validate tile memory requests for TIFFReadRGBATile() . * Remove profiles/sRGB Color Space Profile.ICM and jp2/data/colorprofiles/srgb.icm for being non-free. * Remove zlib/contrib/dotzlib/DotZLib.chm for no source available. Checksums-Sha1: 3735a0d7fa8e344c04d21198a13d49a2984d1f5e 2856 graphicsmagick_1.3.29+hg15665-1.dsc 485de7afe8d0320a87ba24b7ceca532e916c62d4 27363764 graphicsmagick_1.3.29+hg15665.orig.tar.xz b171b5d0f1ae9205af676a7a3d949ef9ea3f163d 141184 graphicsmagick_1.3.29+hg15665-1.debian.tar.xz 391d1ecf100b8bbaf62a3e9dce1c89e8515a9bd9 3242084 graphicsmagick-dbg_1.3.29+hg15665-1_amd64.deb 7d5feb5a09c8f40dcd6e0b4ae0e54466349d89b7 42952 graphicsmagick-imagemagick-compat_1.3.29+hg15665-1_all.deb 69d4020730c14d3bd9f8fbf2b581957125dae4fd 46376 graphicsmagick-libmagick-dev-compat_1.3.29+hg15665-1_all.deb 6f3d9d37ecca12b47b51b6a0f3f9784f03c7fcdd 12872 graphicsmagick_1.3.29+hg15665-1_amd64.buildinfo 46325d097efa1335541c5516aaa6415f5733821b 938468 graphicsmagick_1.3.29+hg15665-1_amd64.deb 21a7cc9f3bea5c7e48f75010b4361187533c7a60 89908 libgraphics-magick-perl_1.3.29+hg15665-1_amd64.deb 12c9483b128594408e3572499301b9a02e29ed1e 137448 libgraphicsmagick++-q16-12_1.3.29+hg15665-1_amd64.deb a0bbe9feffcdee13fdfc9145ea23049f7845802e 322796 libgraphicsmagick++1-dev_1.3.29+hg15665-1_amd64.deb 5b5b90d4cf854238aa3b74a5a7183327e7625648 1159060 libgraphicsmagick-q16-3_1.3.29+hg15665-1_amd64.deb 4ed37d4fbdc6da4e9cae67525b5f2f0a292dda5d 1386156 libgraphicsmagick1-dev_1.3.29+hg15665-1_amd64.deb Checksums-Sha256: 1053b5bbf3c2b47b2f13ca61be8cc38c4fa692419ca44ed8797fed0e7e340e5d 2856 graphicsmagick_1.3.29+hg15665-1.dsc 1741c438bfe7b833a79ccdea4312b5d8a55c35d3f691280398f932fc6e0e4feb 27363764 graphicsmagick_1.3.29+hg15665.orig.tar.xz e7db97da336b0a620452684192e72f8ad7821ca8b3cea49cad3570ae716d1d10 141184 graphicsmagick_1.3.29+hg15665-1.debian.tar.xz f60aaf94f821510a582b940bf3ea42b5a7b057eaef6ba8216dd98d342d1d8a6f 3242084 graphicsmagick-dbg_1.3.29+hg15665-1_amd64.deb dfd1e12a01de8ce422159c806422fde277b0c8c35dc9f4b902a437ddd0efc9ea 42952 graphicsmagick-imagemagick-compat_1.3.29+hg15665-1_all.deb 18255294f4e843a6adeac02395c9d1048ad49330df224f71dd4969ba6d97b49e 46376 graphicsmagick-libmagick-dev-compat_1.3.29+hg15665-1_all.deb 60e513179434c9d8e4ffec1dd81113cb91520ae6e691c055fcd87d3dddf09871 12872 graphicsmagick_1.3.29+hg15665-1_amd64.buildinfo 5ebe90d58eaf99edb36bd561f8647e4390fde331f766247f60eae4f58b55ae27 938468 graphicsmagick_1.3.29+hg15665-1_amd64.deb f91f74a57290d4850dba9140366beccae7c727f5a6d8d74ab53ec3c67a039442 89908 libgraphics-magick-perl_1.3.29+hg15665-1_amd64.deb 3d08af27361adac11f7cadf93c4ccedf56eedf575dd682e6c5b9dce44d609bfd 137448 libgraphicsmagick++-q16-12_1.3.29+hg15665-1_amd64.deb 32c41e227f0b8b526ecb51bd855923ff59a10c7023fabc948867076a2809de7f 322796 libgraphicsmagick++1-dev_1.3.29+hg15665-1_amd64.deb b0e3fbcbe9429db6f9d1080955a4a3d52c6df5fde06158432d82ab3476cf9b80 1159060 libgraphicsmagick-q16-3_1.3.29+hg15665-1_amd64.deb 9c705451574e279d81b558321074c0e68ef97d71deca9c1b57ea3cb4ac7fcc75 1386156 libgraphicsmagick1-dev_1.3.29+hg15665-1_amd64.deb Files: 9107b995ba95d8f5bea3f6da1dc3c16a 2856 graphics optional graphicsmagick_1.3.29+hg15665-1.dsc 3a8cd5a325acf298b8687eade1ec698f 27363764 graphics optional graphicsmagick_1.3.29+hg15665.orig.tar.xz 3a1d8dda43aa4709519bddf282736599 141184 graphics optional graphicsmagick_1.3.29+hg15665-1.debian.tar.xz 2c56d0ae8742cbb2912e4850bfa6e064 3242084 debug optional graphicsmagick-dbg_1.3.29+hg15665-1_amd64.deb 2f5c34011c273a85a91fb911ba2426d1 42952 graphics optional graphicsmagick-imagemagick-compat_1.3.29+hg15665-1_all.deb a68dc050ae30ed1b118ea9ba9db6c201 46376 graphics optional graphicsmagick-libmagick-dev-compat_1.3.29+hg15665-1_all.deb 86748f67d9c7f396e79c78f18253fc3a 12872 graphics optional graphicsmagick_1.3.29+hg15665-1_amd64.buildinfo 8de7a94cb900a9dca88ef86d6e273cd8 938468 graphics optional graphicsmagick_1.3.29+hg15665-1_amd64.deb e1236db4c74a3e879da62535fca772ca 89908 perl optional libgraphics-magick-perl_1.3.29+hg15665-1_amd64.deb 92340382373ae0447a4795083536ab89 137448 libs optional libgraphicsmagick++-q16-12_1.3.29+hg15665-1_amd64.deb 6678bdce7534e2fbd020ad142516a30a 322796 libdevel optional libgraphicsmagick++1-dev_1.3.29+hg15665-1_amd64.deb 95d5a459bfe4e49151c8139131d19274 1159060 libs optional libgraphicsmagick-q16-3_1.3.29+hg15665-1_amd64.deb 10331f3e7e7d57c7cecea6707eacdd64 1386156 libdevel optional libgraphicsmagick1-dev_1.3.29+hg15665-1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEfYh9yLp7u6e4NeO63OMQ54ZMyL8FAlsKt/wACgkQ3OMQ54ZM yL+pXBAAuW+EeS8cGcQu0qq2YzLlX+671wHWVF8V0iQmUu90w0RNsi8emFjYJMSX 6JrQHXXA3Bdvni7do36943Onwa8aQolgh3ZsDH/gnkLAqxeB5BXZi9ZR2K4uB/tQ jVpu2SAQb4tnKRnFjWOLqCtSxqjam3gpILJ3g99x/mvIoltxohGCz+JV6j8XbmEH +lfBa+PWxZL6Ckd69LKnmr/T342r4wdAa+Az/i7ghE/ls2Lvo2e/Ha75g/hNLOtT uyUDbuJobZiF5PcsvZDIMbVOz6dzQrk4A2cgrxyi6XXgiy/hp8Ief77aFOZwTCzy CmsLt975Jz4KOsoShR7lSuZAu8ZXyqk/0nJbdyoMlpHBZrnzNbCkqFtc/weCAJSP 4f7rfR67F2V6aT/jDTR3mWEkCUu306YbDD4isQt7Oc0uxe6iWEm9LABQGFA6WuDq vcPbCjNEh+Lmee1Aw0YjTZdGxV9zcInM4SCR2MTrqAW3LI6CukiUW3UPBupXj/5A R+U9mJsvHi/yDW79Q1mQNMtWq79TIls3Y0UuzuTfGf00EdTJTyzee/JwSPBGxQBK KIJZRPbFgkNDzQxuaifL/wipEq7HS8AQxkCL8z5WIv3MKxVRKrNxL5NHF2TFf3GZ UvMqDY3FTcabDjHdsi9EYA5wvDWuvb4NsuLRlprKaJq+SQO1Oro= =S4m6 -----END PGP SIGNATURE-----