-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 10 Aug 2018 16:37:19 +0200 Source: sam2p Binary: sam2p Architecture: source Version: 0.49.2-3+deb8u3 Distribution: jessie-security Urgency: medium Maintainer: Tanguy Ortolo <tanguy+debian@ortolo.eu> Changed-By: Holger Levsen <holger@debian.org> Description: sam2p - convert raster images to EPS, PDF, and other formats Changes: sam2p (0.49.2-3+deb8u3) jessie-security; urgency=medium . * Non-maintainer upload by the LTS team. * Fix CVE-2018-12601: a heap-buffer-overflow in function ReadImage, in file input-tga.ci using https://github.com/pts/sam2p/commit/8b2b715199 from Peter Szabo. * Fix CVE-2018-12578: a heap-buffer-overflow in bmp_compress1_row using https://github.com/pts/sam2p/commit/22e7a17e70 from Peter Szabo. Checksums-Sha1: 20ec472dfb65006ed1cc8c0d23503f2c634e1c73 1887 sam2p_0.49.2-3+deb8u3.dsc a26db7408dfa42ab615d087774128cc5b20ab61d 562733 sam2p_0.49.2.orig.tar.gz 64089a3085b4a64beeb3d329344ec534cf188e13 26400 sam2p_0.49.2-3+deb8u3.debian.tar.xz Checksums-Sha256: bf538785c410d73446d1214791235ae386f13bb9796dae5f7e83ea6e4736df4f 1887 sam2p_0.49.2-3+deb8u3.dsc 0e75d94bed380f8d8bd629f7797a0ca533b5d0b40eba2dab339146dedc1f79bf 562733 sam2p_0.49.2.orig.tar.gz 33676bfae171292fa33c444e655af08474bc5483e21dac6b5a93d8ac9a2eb816 26400 sam2p_0.49.2-3+deb8u3.debian.tar.xz Files: 301249a8ce2162385396c3dee232df1f 1887 graphics optional sam2p_0.49.2-3+deb8u3.dsc fd46bcd21576cf9441fc80639a6033b0 562733 graphics optional sam2p_0.49.2.orig.tar.gz 58223d0f7f40b7a5d82b55affb37d66a 26400 graphics optional sam2p_0.49.2-3+deb8u3.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEuL9UE3sJ01zwJv6dCRq4VgaaqhwFAlttwxwACgkQCRq4Vgaa qhwX3g/9FDkx29qBpIRwX8s3qlRJarlMvDDJADcm/xB+88892MF3Xj+FGeGZBmdD Nq7XBU7AZ3jX43LCkPnuRAy17l5C/k72G7WZ46G/4LG9WBxblpxBaodnFp9KUUsC uOxlGkT1IJX77pn/grMuuft98JYDQUsOfRyCELDm70mXAXJT4KZyBdPGy3n+zg/M 1nl4y8Y81kn6UktDBHr2XWN5WaU6UIxdqLboH8XH/+6fi0iEsyq1Xo0vgkXG/9Yr CT28XJ5Q+KRi2CC46TH0uqg2oRI0LoeQBmIfIE357iM7g3bj/RSFGsVtmvzQiGlb haMWmvllpceQwVk5jK9F6LIzTBI5QhZSgk7QHuOe432Jb3Mw5Y0EwHdbmaLf9eKz ZTV2JZv2nn2Zb+LUSNhhU7QsARykvj1UOssZYQKoEAbSbTkjbwoslioiqchUP6yY jaODOZ5AeYBjXoadMp2YTYQJe2bd2Iqsu9HfQIg9Z+w0lIbwDm9KK2ujAgBhdB4k Oz0Ffqdha176UWSNxMUUi2wsq42xynn3u8TTceERk0fy8cSFUaPdcNqxRhEqPNnu z87Y6MaKOmdVuKQ1jURIK0KK+vR1aXMbovMM/l1RjP/WmEARbucum+UePTLBTzA/ nrJPMONF3/Rl3fpMhnnAqE1Zz8ncblWxU2w/kjH8H+WRPfE8MV8= =TtTl -----END PGP SIGNATURE-----