Accepted fribidi 1.0.8-2.1 (source) into unstable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 05 Apr 2022 22:03:02 +0200
Source: fribidi
Architecture: source
Version: 1.0.8-2.1
Distribution: unstable
Urgency: medium
Maintainer: Debian Hebrew Packaging Team <team+hebrew@tracker.debian.org>
Changed-By: Thorsten Alteholz <debian@alteholz.de>
Closes: 1008793
Changes:
fribidi (1.0.8-2.1) unstable; urgency=medium
.
* Non-maintainer upload by the LTS Team.
* CVE-2022-25308
stack-buffer-overflow issue in main()
* CVE-2022-25309
heap-buffer-overflow issue in fribidi_cap_rtl_to_unicode()
* CVE-2022-25310
SEGV issue in fribidi_remove_bidi_marks()
(Closes: #1008793)
Checksums-Sha1:
25acb6eff5bf6a22a728a433f61d8b22b588b58b 2457 fribidi_1.0.8-2.1.dsc
a08c3459d6d565bdc7f43200c7606705097a19d3 10348 fribidi_1.0.8-2.1.debian.tar.xz
690644151a961d899654abbbacf7026acb8c53e3 7543 fribidi_1.0.8-2.1_amd64.buildinfo
Checksums-Sha256:
7efd56752103ca3ea6190bbc3ee49b613bc131cd7551fb64c6e9d233d4496553 2457 fribidi_1.0.8-2.1.dsc
7e80ba37a8ef1ce98c73a888b56a3f1192fbd0f43c46b626026106065bd2993a 10348 fribidi_1.0.8-2.1.debian.tar.xz
89d3592c09e49ef85a8da3cb1d18db4e7a5ceac5634d35173bafe1d1f84e72f7 7543 fribidi_1.0.8-2.1_amd64.buildinfo
Files:
3ca2b43812ecd1514b2f612db3aae3bc 2457 libs optional fribidi_1.0.8-2.1.dsc
35741fa1995b58048a63dd9fcafc65fc 10348 libs optional fribidi_1.0.8-2.1.debian.tar.xz
b38ed9cc5f80256d84fd481168bdc14d 7543 libs optional fribidi_1.0.8-2.1_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=E68V
-----END PGP SIGNATURE-----