Format: 1.8 Date: Mon, 17 May 2021 09:08:32 -0400 Source: djvulibre Binary: djvulibre-bin djvuserve libdjvulibre-dev libdjvulibre21 Built-For-Profiles: noudeb Architecture: i386 Version: 3.5.28-1ubuntu0.1 Distribution: hirsute Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: djvulibre-bin - Utilities for the DjVu image format djvuserve - CGI program for unbundling DjVu files on the fly libdjvulibre-dev - Development files for the DjVu image format libdjvulibre21 - Runtime support for the DjVu image format Changes: djvulibre (3.5.28-1ubuntu0.1) hirsute-security; urgency=medium . * SECURITY UPDATE: Stack overflow - debian/patches/CVE-2021-3500.patch: prevent recursion in libdjvu/DjVuPort.cpp, libdjvu/DjVuPort.h. - CVE-2021-3500 * SECURITY UPDATE: Out of bounds write - debian/patches/CVE-2021-32490.patch: add checks to libdjvu/IW44Image.cpp. - CVE-2021-32490 * SECURITY UPDATE: Integer overflow - debian/patches/CVE-2021-32491.patch: check for overflow in tools/ddjvu.cpp. - CVE-2021-32491 * SECURITY UPDATE: Out of bounds read - debian/patches/CVE-2021-32492.patch: check pool in libdjvu/DataPool.cpp. - CVE-2021-32492 * SECURITY UPDATE: Heap buffer overflow - debian/patches/CVE-2021-32493.patch: check row size in libdjvu/GBitmap.cpp. - CVE-2021-32493 Checksums-Sha1: 3a951e369b1e1da9c2abac143fde6b257c7f17fd 1337704 djvulibre-bin-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb 79551dd30683c599bca5d6d93066cf55b05b0ea1 285256 djvulibre-bin_3.5.28-1ubuntu0.1_i386.deb 37abbb4a6395d2fa460e8a17d8f206e7fc9bf555 9290 djvulibre_3.5.28-1ubuntu0.1_i386.buildinfo 16af466bb7b147bed62292ed585787320ef929b3 70552 djvuserve-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb fe1adef4d9ee0cadf34b6fbfeb9b41ec29535de9 21236 djvuserve_3.5.28-1ubuntu0.1_i386.deb c5913e4653f09fcd2e314f72715e3a88e08dead0 2445724 libdjvulibre-dev_3.5.28-1ubuntu0.1_i386.deb 6889a3148ebfdb7c9f6f637dc089daff380399c4 3515704 libdjvulibre21-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb 9a6f91e9be05bf794368d76725d6962be091d170 619484 libdjvulibre21_3.5.28-1ubuntu0.1_i386.deb Checksums-Sha256: 437de8d2e244797f26f33b6ddd9a04e5c9f1d4d3242e363f435a65a7a156edb0 1337704 djvulibre-bin-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb 874982434d3b4f7c425883436ab48d82b9e43f991dd34742d088fb1f18fa157c 285256 djvulibre-bin_3.5.28-1ubuntu0.1_i386.deb baaf8cd425040a261b7a37aab76bb12269741a7bb1f33316e63a02489775500e 9290 djvulibre_3.5.28-1ubuntu0.1_i386.buildinfo b532d6cb8655a9ef84c60a7ea46d0529b12ad2788169f1ab44c0c5c96b64542e 70552 djvuserve-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb b42e80b39e279a1f15dd3495d9008bb710e98ea97ff1a4e73391b2b01eea34e0 21236 djvuserve_3.5.28-1ubuntu0.1_i386.deb 2c2801acf32b65984705a6aee3bcf238019549106d73c96fd212f6949f4be589 2445724 libdjvulibre-dev_3.5.28-1ubuntu0.1_i386.deb a8f597d3e68ef8e26bfe1a5ca5621ca31770e87b2dcd051c1e1993e4aa6f0d6c 3515704 libdjvulibre21-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb f991dc066a323cb84d212e2f72a8d85eee51fb2791f7d339fec378de49b2e999 619484 libdjvulibre21_3.5.28-1ubuntu0.1_i386.deb Files: 06d3ab5daed2345bdf67004629e1bc84 1337704 debug optional djvulibre-bin-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb 4da042f4ed09ca8fb8a9082c2114533b 285256 graphics optional djvulibre-bin_3.5.28-1ubuntu0.1_i386.deb 06226d829c0beaa11c90b3d87d2ed281 9290 libs optional djvulibre_3.5.28-1ubuntu0.1_i386.buildinfo dc627e90e82248b0525baf7a75c9047a 70552 debug optional djvuserve-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb c4595304f525c497176b2f6ab1c4d600 21236 web optional djvuserve_3.5.28-1ubuntu0.1_i386.deb 141184dee1a4733dd70e74ea8611889d 2445724 libdevel optional libdjvulibre-dev_3.5.28-1ubuntu0.1_i386.deb 5e3c80d931ffb1d61fa7a67785184752 3515704 debug optional libdjvulibre21-dbgsym_3.5.28-1ubuntu0.1_i386.ddeb e51fab957bf6bd97bf5b78156eed3221 619484 libs optional libdjvulibre21_3.5.28-1ubuntu0.1_i386.deb Original-Maintainer: Barak A. Pearlmutter