-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 08 Jul 2019 09:15:40 +0200 Source: dosbox Architecture: source Version: 0.74-2-3+deb10u1 Distribution: buster-security Urgency: medium Maintainer: Stephen Kitt Changed-By: Stephen Kitt Closes: 931222 Changes: dosbox (0.74-2-3+deb10u1) buster-security; urgency=medium . * Apply upstream fixes for two security issues: - CVE-2019-7165: long lines in batch files would overflow the parsing buffer; - CVE-2019-12594: programs running inside DOSBox could access /proc. along with a number of buffer overrun fixes. Closes: #931222. Checksums-Sha1: 92683c016011e4df152f6f2e6d3fcde3fc81bb38 2006 dosbox_0.74-2-3+deb10u1.dsc 3008694ef998853257c6a4cb5374229e157ceaf3 1324059 dosbox_0.74-2.orig.tar.gz cd12a4b35f2ff562c05f8bb3e2aa13a65bcf2782 94724 dosbox_0.74-2-3+deb10u1.debian.tar.xz 3a3f656625a75079cfb0ae48bc0722f60d7d8b9b 10379 dosbox_0.74-2-3+deb10u1_source.buildinfo Checksums-Sha256: 4f312a2292a6f355f0a344dff0f406f76c461e53d96f157a976f3563b1ad735b 2006 dosbox_0.74-2-3+deb10u1.dsc 7077303595bedd7cd0bb94227fa9a6b5609e7c90a3e6523af11bc4afcb0a57cf 1324059 dosbox_0.74-2.orig.tar.gz fe06d5f9dac6abdb25bc71f57b03c6a6d07ca15dab64016d449c23bacc428a00 94724 dosbox_0.74-2-3+deb10u1.debian.tar.xz 94cdee3808b72726a605c5348a74ef40385408af8da794f7df1530ccebe60327 10379 dosbox_0.74-2-3+deb10u1_source.buildinfo Files: 2458c9d99b4402184391a7b7e6bd1efe 2006 otherosfs optional dosbox_0.74-2-3+deb10u1.dsc 7110ee24a45a2b4951ad52eb1a3722be 1324059 otherosfs optional dosbox_0.74-2.orig.tar.gz 62fa5eb5d7a28f48d19751082936c8fc 94724 otherosfs optional dosbox_0.74-2-3+deb10u1.debian.tar.xz 7f40fef0c10da2128b462c1cad8dc0cd 10379 otherosfs optional dosbox_0.74-2-3+deb10u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnPVX/hPLkMoq7x0ggNMC9Yhtg5wFAl0jrCQACgkQgNMC9Yht g5yIPQ//fqflx1Ld+M9ImWTacLolf2ITyouBjKmb5EvBvZ0Gd1jFQDV2n7Yx3wAS 7BmUebNK1Uv2WFf47wuZ4FCm7KyahRIvl+d29aZ3PBf2++wtA4fpHWMf+x4HDWAF JWL5s8H5LvBC2fZbQl1F0e6wbE2kv9njloIWnqil+R+X7MBRcRAHoZAyVFYD2c2v cfOjIjz0GeroWp11kN3RUOGQn+eW6v49QdpUbL7mts42Hia0tLzViebOfMTYhTlt T/V2V/FH0G82wDDV/dhyb6lvM0Y8Z1XGwerSXW7Tc1tR3/fDzqcb0DANhkHcmPRH 6zQoxISpHrVbWBH2hDG8ArACUNriglKN3FubYAaCcapeRHFofRAGZk9NPd31x07Y tc2XNEftRoq/6lpqGGx3FVeWD7lV2dTr6C6hQq3ehySsuaPvY+VTtYypcH0VO+lu 5Uin1EDlAOShbJkxg9S65owe+z7sTBRQFECbDozfxMzb1iIjjtjqJ2M3cpjxSS44 1rXxtJQnrLsjfjQnT3YqKBKMUhLeQUYB1yZIwMIibPQ01dRlZB76lRoYbuTptnSL +hgv3BqjBmd/cJq+FO0elaYkyv6YsulKurU4L5adgryBbWYdsxJzsgCnki0LTQYj Bx4y2+SgtiYceTLIJjPb7k9PzGkphX22R3Xxxh6qIBfBXvPBx8Q= =WNmz -----END PGP SIGNATURE-----