-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 03 Oct 2023 11:59:05 +0200 Source: libxpm Binary: libxpm-dev libxpm4 libxpm4-dbgsym xpmutils xpmutils-dbgsym Architecture: ppc64el Version: 1:3.5.12-1.1+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-02) Changed-By: Julien Cristau Description: libxpm-dev - X11 pixmap library (development headers) libxpm4 - X11 pixmap library xpmutils - X11 pixmap utilities Changes: libxpm (1:3.5.12-1.1+deb11u1) bullseye-security; urgency=high . * CVE-2023-43788: out of bounds read in XpmCreateXpmImageFromBuffer() * CVE-2023-43789: out of bounds read on XPM with corrupted colormap * Avoid CVE-2023-43786: stack exhaustion in XPutImage() * Avoid CVE-2023-43787 (integer overflow in XCreateImage) Checksums-Sha1: 399aa5e14e68705c8ac19d5077ef5177ec397603 111992 libxpm-dev_3.5.12-1.1+deb11u1_ppc64el.deb 2a7c5db58b458c90be61dfdf235e0397c6e2616d 106436 libxpm4-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb 3c68db69b0583b44214fea41583c6dc18c185e63 55400 libxpm4_3.5.12-1.1+deb11u1_ppc64el.deb 460b623c2cc663af9bc37974e719babc25a40c2f 7913 libxpm_3.5.12-1.1+deb11u1_ppc64el-buildd.buildinfo 6655f657e301e4401daf622be491d9c2a0322a1e 57972 xpmutils-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb 33c7ea0e2f9a3be2fb42db5cd116f79f2dcabc5d 42568 xpmutils_3.5.12-1.1+deb11u1_ppc64el.deb Checksums-Sha256: 14470d3c47d00383f714e97b566302d2b61932b1688faa300552cebb66122746 111992 libxpm-dev_3.5.12-1.1+deb11u1_ppc64el.deb bdc1adf04af55bcb815b381b8c52e2c2d24c89e41fae9079bb2facf3f5b4ae6e 106436 libxpm4-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb b5af0d86cf60b05b17c5d38eb082932f1415cade06e2e429061a4302a525eba4 55400 libxpm4_3.5.12-1.1+deb11u1_ppc64el.deb 484337875c4a31cceb44c4622f87ed41b793ddf7d86c3f980dd42565950a35ee 7913 libxpm_3.5.12-1.1+deb11u1_ppc64el-buildd.buildinfo e59307bb9ffe1ce2cf36b8e765ae92a9fdb730708d8ac4ee89745148bbba6768 57972 xpmutils-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb 8ba586fcdde63a6653d1becfa763d841be19ecc3b6e3766af6b2c5614181bdcd 42568 xpmutils_3.5.12-1.1+deb11u1_ppc64el.deb Files: 70fd249dcde68e41b8fe889418cea5a0 111992 libdevel optional libxpm-dev_3.5.12-1.1+deb11u1_ppc64el.deb bbbb0130396562370daaf9a04e0d73ca 106436 debug optional libxpm4-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb 406e3a4d0733e01f584691dec0ad4694 55400 libs optional libxpm4_3.5.12-1.1+deb11u1_ppc64el.deb 9a034059db582d25f89d258b9fad39b6 7913 x11 optional libxpm_3.5.12-1.1+deb11u1_ppc64el-buildd.buildinfo 87b02c4057834cc5b51037cc24c62538 57972 debug optional xpmutils-dbgsym_3.5.12-1.1+deb11u1_ppc64el.deb aa24b862eee6594f2b8242765386f114 42568 x11 optional xpmutils_3.5.12-1.1+deb11u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEHDNCkvGgp2XShfnByW8ECaj2byoFAmUb7h0ACgkQyW8ECaj2 bypeoA/+MhLk5c+ymMEINNpuxVCHxrnyV/uSeSxmnH16k8X77d5UF4yMozRBDN6r TPVUKvQEG/voffg2ZIiJcqLEke/QjIfhSulVLcrdO/MfGZF1ydh9flrejnRHpAu6 FO+bGYvV37uQ+ywsl6p64R+D8QrsYUqe9ZfS7Ftyio0QSw/4/fFjJ8fIBAGv4Oex MzLHJWFlmYFVTS4/T5l+XdmXcUNGEtHCmN59CbL7aiYSqT5Qo2hS/l/UiPOTxyP/ mk+FP4ZTNQCz9MuaXn60U8quTprA6aVlUhG35ewEMGu29/rWodXE7/D6sVDloW4+ 9JaWPHLEy07y4vaXdftQkd/TVZ+ccQP/VWr/Ogu3iQCe8pCLW0z6H0jwFtxtBO62 Kg8wUHGfxcH4FRoHqAik2h8SzWpUtdjYti3QH40GjA1J4jszQlsma2Z+FjvQePI1 crHQWsJtUbj9IG4tcrJHq8QgSIt3MIBYKMp9iIbisZNHN/5YGF/45e7qj3E7+pl2 etJtSlhszARBj7N1uAuITg5u0MgrjpYWMInJ8uHJz69Kp/O54GF/OvRzZOkgRj4p zQx/eopetD6Xjn2SyMnAsp0Rv1wvmJL0deedpWEdSSXdNAKUCymyCTjmgOQWaKvQ yT7vt9kiW0wfi7n+ArUUSQMurahSlflTp4xLh/dRr7Q8oUMT5tI= =Yobx -----END PGP SIGNATURE-----