Format: 1.8 Date: Wed, 24 May 2023 14:17:45 +0300 Source: jhead Binary: jhead Built-For-Profiles: noudeb Architecture: s390x Version: 1:3.06.0.1-2ubuntu0.22.10.1 Distribution: kinetic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: George-Andrei Iosif Description: jhead - manipulate the non-image part of Exif compliant JPEG files Changes: jhead (1:3.06.0.1-2ubuntu0.22.10.1) kinetic-security; urgency=medium . * SECURITY UPDATE: heap buffer overflow while rotating an image - debian/patches/CVE-2021-34055.patch: If a read EXIF section in jpgfile.c, then discard it. - CVE-2021-34055 * SECURITY UPDATE: code execution when regenerating the Exif thumbnail - debian/patches/CVE-2022-41751.patch: Adds a check in jhead.c for dangerous characters in filenames. - CVE-2022-41751 Checksums-Sha1: 8bdaaf802960197468ead1e56ca925e45248876d 56260 jhead-dbgsym_3.06.0.1-2ubuntu0.22.10.1_s390x.ddeb e808d51f258486bcb1326d1933ed57b84dcf080e 6223 jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.buildinfo 85cad259cf2af7c9688979065941feb55146e387 50546 jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.deb Checksums-Sha256: b8488962d1dff1133923a7892a2d22928c86e614b91dcd97c78f77e2cf2ce02e 56260 jhead-dbgsym_3.06.0.1-2ubuntu0.22.10.1_s390x.ddeb 82db3026e86ee4657886824b379b756f6e4fb07553d1d1546bae6d65418ecd43 6223 jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.buildinfo 01295ae9508a1e315e993dcabaaf2039ca94f5a60ee829c26c56fceb1c2ef1e9 50546 jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.deb Files: 52bef3e0abf0e42ea96af3d745404f13 56260 debug optional jhead-dbgsym_3.06.0.1-2ubuntu0.22.10.1_s390x.ddeb fc38e9657498c7ab7087d9def284c4e7 6223 graphics optional jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.buildinfo 54c0799a3eca64c4e4c338095cdb243a 50546 graphics optional jhead_3.06.0.1-2ubuntu0.22.10.1_s390x.deb Original-Maintainer: Joachim Reichel