Back to libraw PTS page

Accepted libraw 0.19.2-2+deb10u3 (source) into oldstable



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Sat, 27 May 2023 01:18:40 +0200
Source: libraw
Architecture: source
Version: 0.19.2-2+deb10u3
Distribution: buster-security
Urgency: high
Maintainer: Debian PhotoTools Maintainers <pkg-phototools-devel@lists.alioth.debian.org>
Changed-By: Guilhem Moulin <guilhem@debian.org>
Closes: 1031790 1036281
Changes:
 libraw (0.19.2-2+deb10u3) buster-security; urgency=high
 .
   * Non-maintainer upload by the LTS Security Team.
 .
   [ Helmut Grohne ]
   * Fix CVE number in deb10u2 changelog.
 .
   [ Guilhem Moulin ]
   * CVE-2021-32142: Stack buffer overflow in LibRaw_buffer_datastream::
     gets(). Closes: #1031790.
   * CVE-2023-1729: Heap-buffer-overflow in LibRaw::raw2image_ex(int).
     Closes: #1036281.
Checksums-Sha1:
 4c607bbb3ec31cb76f74c34f2c68e0c4a56fb710 2211 libraw_0.19.2-2+deb10u3.dsc
 f5d9118a5d6df35bed346838b4a8fcc7e1de0293 25264 libraw_0.19.2-2+deb10u3.debian.tar.xz
 23594d30f6672b29ab236f9951dc7b5694211642 7201 libraw_0.19.2-2+deb10u3_amd64.buildinfo
Checksums-Sha256:
 204ec9ca7271ee9a6ec8b3e5dfdadbfb454b0090e7e649c3e9ed8568a60b096c 2211 libraw_0.19.2-2+deb10u3.dsc
 029b7f63678e2ea313c301b19d74d9e64991aa3db9acb8c00f33d007f6fdc40f 25264 libraw_0.19.2-2+deb10u3.debian.tar.xz
 fd42e0042aaf3ed5e8fdcd3434f7e0e0842f78173d2fed48dffeb5b1cd525c4a 7201 libraw_0.19.2-2+deb10u3_amd64.buildinfo
Files:
 b3979e2ea5d228cd62627681d0fb482c 2211 libs optional libraw_0.19.2-2+deb10u3.dsc
 40ce8b355b05d23a1f15541a3a643331 25264 libs optional libraw_0.19.2-2+deb10u3.debian.tar.xz
 f4b0cb3d0e1584cf1fbcf8957f8c6aa6 7201 libs optional libraw_0.19.2-2+deb10u3_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=XluW
-----END PGP SIGNATURE-----