-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 27 Jul 2019 13:19:47 -0300 Source: libsdl2-image Binary: libsdl2-image-2.0-0 libsdl2-image-dbg libsdl2-image-dev Architecture: i386 Version: 2.0.1+dfsg-2+deb9u2 Distribution: stretch Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Hugo Lefeuvre Description: libsdl2-image-2.0-0 - Image loading library for Simple DirectMedia Layer 2, libraries libsdl2-image-dbg - Image loading library for Simple DirectMedia Layer 2, debugging s libsdl2-image-dev - Image loading library for Simple DirectMedia Layer 2, development Closes: 932754 Changes: libsdl2-image (2.0.1+dfsg-2+deb9u2) stretch; urgency=medium . * Non-maintainer upload. * Multiple security issues (Closes: #932754): - CVE-2018-3977: buffer overflow in do_layer_surface (IMG_xcf.c). - CVE-2019-5052: integer overflow and subsequent buffer overflow in IMG_pcx.c. - CVE-2019-7635: heap buffer overflow in Blit1to4 (IMG_bmp.c). - CVE-2019-12216, CVE-2019-12217, CVE-2019-12218, CVE-2019-12219, CVE-2019-12220, CVE-2019-12221, CVE-2019-12222, CVE-2019-5051: OOB R/W in IMG_LoadPCX_RW (IMG_pcx.c). Checksums-Sha1: 660f8f172b21ab316c05dc7fe9d76a757615892f 41608 libsdl2-image-2.0-0_2.0.1+dfsg-2+deb9u2_i386.deb 468514346d7e763b36078ce5ece682ece19992d3 84586 libsdl2-image-dbg_2.0.1+dfsg-2+deb9u2_i386.deb 651a4f0e446053e29a73778a7980249d73327733 47698 libsdl2-image-dev_2.0.1+dfsg-2+deb9u2_i386.deb 78ea053c2ba261051e5ec3e7bca34764318af39f 11444 libsdl2-image_2.0.1+dfsg-2+deb9u2_i386.buildinfo Checksums-Sha256: f8d1e4877d2ec36db8089e90089585ee745fc11c5ea31c2d689dacb5d72c68cd 41608 libsdl2-image-2.0-0_2.0.1+dfsg-2+deb9u2_i386.deb 0b1200d93957a555de33505e968d0bf3761e647d036c096e23e4cdc0deddf74f 84586 libsdl2-image-dbg_2.0.1+dfsg-2+deb9u2_i386.deb 747e907261eb80e923928cd67be5c7d72e836abb4c512fd2cbee919295e7ebe6 47698 libsdl2-image-dev_2.0.1+dfsg-2+deb9u2_i386.deb e18f3179f400e367ec83b270c98bacb56b7df879a5dbdfec78bcda198f25dbd3 11444 libsdl2-image_2.0.1+dfsg-2+deb9u2_i386.buildinfo Files: 868f58af7250c310c37ea95eb0200a87 41608 libs optional libsdl2-image-2.0-0_2.0.1+dfsg-2+deb9u2_i386.deb 12aa5a856621ba39ad6bfd16c7687b4a 84586 debug extra libsdl2-image-dbg_2.0.1+dfsg-2+deb9u2_i386.deb 0eb73a0c4ccec20f569577d1f7e4d679 47698 libdevel optional libsdl2-image-dev_2.0.1+dfsg-2+deb9u2_i386.deb a6bb006e6e8f7b7c5a98e54c94c01b44 11444 libs optional libsdl2-image_2.0.1+dfsg-2+deb9u2_i386.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEc1Y9tvYCx8z2wuljZWBroU7DAFMFAl1BBMMACgkQZWBroU7D AFMUsxAAoVAEK6M2E47ZKAAG4HiEFuOrZLoeWkoGEAb/Cyl3tVnv3611okxLdPmM +eo8QmykaPd80eKPoiaJsW6RHM7+LTGYmAoGkf7dXmJ2yIImXLHhNKN9mH94ckgy THudcAAW8YevbNcPIOjA2KbrO2VqIPwLpILH8tcAt8B1TdoMRS3dng/ZpDBf4tuu JcuMudx8QnMlwuPMsuTrZkZWkZTVGlGWs5yNDYBtdc+0sQq6Knu0S/nDbDEBlER0 cSw/GloW9010eMpLcyzuIiAq7R+3m0BTGO8NfS6S4J+kjsCtuYjOpS6id1B9UKZj FB9cKgWBNkcWL42eu9D2gzf6GdWomPegK87HvfPpHciu6tisSdGKcTsNXZrGIMvN +QVVWDn22ohLkJl3JmncBsBQECfpxClV/A00yxC5sfEgDSo5SopW2ipH0qooBlS8 K/uyQMBU7WlqNYpks7f1KqOnNu6tvJKxHTrFesJfkZWobkFimjmQcJ0gqkFSLwNw bksAZuxyJzRDCNZ9tHJqN6gZe0niTUYAo1Nc+VFZrNWmET3hBo7XoNaB98+35oPt NeDBMowKhnr2cLDu0u43Vn+VHze2VpVba0FAps0JoP94SOOzHdYVl+HlU1G+YIrs Lty+BDmfk+xOz1N5vcgzDAzzuk2x3j/uxRPyE2g++ct0tK0Lqkg= =Ys1N -----END PGP SIGNATURE-----