-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 03 Oct 2023 11:59:05 +0200 Source: libxpm Binary: libxpm-dev libxpm4 libxpm4-dbgsym xpmutils xpmutils-dbgsym Architecture: mips64el Version: 1:3.5.12-1.1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-osuosl-03) Changed-By: Julien Cristau Description: libxpm-dev - X11 pixmap library (development headers) libxpm4 - X11 pixmap library xpmutils - X11 pixmap utilities Changes: libxpm (1:3.5.12-1.1+deb12u1) bookworm-security; urgency=high . * CVE-2023-43788: out of bounds read in XpmCreateXpmImageFromBuffer() * CVE-2023-43789: out of bounds read on XPM with corrupted colormap * Avoid CVE-2023-43786: stack exhaustion in XPutImage() * Avoid CVE-2023-43787 (integer overflow in XCreateImage) Checksums-Sha1: 6dd87416e966884900e754a6002469362517d15a 106056 libxpm-dev_3.5.12-1.1+deb12u1_mips64el.deb cd018d23251f37546663ef56439a5ab7aacdde59 106648 libxpm4-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb f3b81483d164546aa7033b50d6cb19ece28497ac 45536 libxpm4_3.5.12-1.1+deb12u1_mips64el.deb 4ebd2589032087004f7df4c87e86e9a89111db3a 7625 libxpm_3.5.12-1.1+deb12u1_mips64el-buildd.buildinfo cf785af72045f36e66609e6726c0947a12bedeac 57112 xpmutils-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb 551db3ce5839a7e7a56c9b691daa9c023bf210e4 37184 xpmutils_3.5.12-1.1+deb12u1_mips64el.deb Checksums-Sha256: d2bcbbed12acaa2dcd8907b8002c2b0098aaa72c1803b5ec0e7e4320796366cd 106056 libxpm-dev_3.5.12-1.1+deb12u1_mips64el.deb 79f9094bd2f0c9c8c7a93a3d73a745f3b8d84f2fa45bad757675810a05352197 106648 libxpm4-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb 894b1f6b9771e401636881ffb8eb8f7a590892796ea7dc1502d95b6da743c453 45536 libxpm4_3.5.12-1.1+deb12u1_mips64el.deb e9254ae3420271427d398eb59a56561d2f7abb2b1c28d17c9065e53a0f5ace0d 7625 libxpm_3.5.12-1.1+deb12u1_mips64el-buildd.buildinfo 30a0a9b505774118b39587e9b3dd456d0e4857eb66e06745da33af16bb6504d1 57112 xpmutils-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb 85b0f36d0161523d636ac20796514b6a8c3dad63a3191a1d0348aafdd404d4ff 37184 xpmutils_3.5.12-1.1+deb12u1_mips64el.deb Files: 0536071e4e0e783caa9b17f695161871 106056 libdevel optional libxpm-dev_3.5.12-1.1+deb12u1_mips64el.deb 2371e43610c3d7e7bfad15532302e336 106648 debug optional libxpm4-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb 2670a80c7b346f4292015109eace2d58 45536 libs optional libxpm4_3.5.12-1.1+deb12u1_mips64el.deb bf9dae7ad23555e89c8188d9586e3b96 7625 x11 optional libxpm_3.5.12-1.1+deb12u1_mips64el-buildd.buildinfo 961f84019f806d78c4977591b7595412 57112 debug optional xpmutils-dbgsym_3.5.12-1.1+deb12u1_mips64el.deb 7fa8e6d908435312c7bb15fbcff1f554 37184 x11 optional xpmutils_3.5.12-1.1+deb12u1_mips64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXUZVEjohYGA7PDpMojl408mCs9YFAmUb6u4ACgkQojl408mC s9aRww//Q862/32ni0fryyfOE5xBIRNvNabT51VdS4YyO+nCC6oD19msvWsmO1eA jyoTPsappF9HgtKrf0X8YG+HEYwMj1e5cwk8LsBa2S+X4Da1+HTrZWjnw9dSSfJW tZMhg85O9PwtrOoaE3TybjNzZN14SfEnnnr6NUbJhnCAf5LaTgITDvs7SEdoTsDt TCrxfOhuVhT4f4yp2hUckSvV9Lnvnk09nQZQJkTkMoRgtDDJzPzRxyt8hEz8E8nV qWVohEr01RPsg2WS/9ZyU/f+I6nlFO1lLyuCbivQ5OFOSh/ODN2URohT69+wQdC/ kiZ+eoSBl/kVU3cGDeX3CpBafJvmfiVq4HCCG8RxYvqbJYIn5V+OKhYhI6t3JDEO Ut8YbEPeIMSdbqJ/m/8oWZh9wGP2kBb26pJoJ60m3HwQzDM4paqgyApKixS8N/fB fjyJhMQJbMne1HG4x5rjhC79AxYtDTrnoS7MWSVTK35E2s/jJYIrBn9e0iSumSBG NQvIN1FO6hzzzv7mu6dk3zWlUNpJ8+Yd3NDp4n0L8I8HGhhOc94JtBkIcHxjm9ge ydL2wvCoYlTT50TedqlgWpGDqfw0bqzhI74lFhClhpy8jPcWTwo8TSICRLc5qRh4 ql0XwVpSKTT5T9zgorrNmyz266sxgQAiaWmq5KyuT3xgXXmJDHg= =hUUK -----END PGP SIGNATURE-----