Accepted zziplib 0.13.62-3.2~deb9u2 (source amd64) into oldoldstable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 26 Dec 2021 00:03:02 +0100
Source: zziplib
Binary: zziplib-bin libzzip-0-13 libzzip-dev
Architecture: source amd64
Version: 0.13.62-3.2~deb9u2
Distribution: stretch-security
Urgency: high
Maintainer: Scott Howard <showard@debian.org>
Changed-By: Thorsten Alteholz <debian@alteholz.de>
Description:
libzzip-0-13 - library providing read access on ZIP-archives - library
libzzip-dev - library providing read access on ZIP-archives - development
zziplib-bin - library providing read access on ZIP-archives - binaries
Changes:
zziplib (0.13.62-3.2~deb9u2) stretch-security; urgency=high
.
* Non-maintainer upload by the LTS Team.
* CVE-2020-18442
Because of mishandling a return value, an attacker might cause a
denial of service due to an infinite loop.
Checksums-Sha1:
8489eb9772768114fcf4d6d2d1b69a790f0e013e 2223 zziplib_0.13.62-3.2~deb9u2.dsc
cf8b642abd9db618324a1b98cc71492a007cd687 685770 zziplib_0.13.62.orig.tar.bz2
8c97ae9dfc45e73b32f90d510d53fee0ed34cbe1 17044 zziplib_0.13.62-3.2~deb9u2.debian.tar.xz
10c1e413d5a2e95328a1c19ac2895eac68fdc910 5942 libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
aa4e9abbee23345e71468977b69125ea9e79c89e 56262 libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb
950a313cc8cc2b341cd645e28015d5d3530aeeae 112162 libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb
5489f4a6ff312229a4e4a95d5a95afa3fae6fb89 4358 zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
de3e6c6df83e8057a375118121a5ae0223837822 42304 zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb
a00c35db021fae7b316562aaebc474e4c85c83ae 7750 zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo
Checksums-Sha256:
2e658c35776469c6be9de6df20d96a547e91e6d7d3e9eefb4d68ca0456d74f38 2223 zziplib_0.13.62-3.2~deb9u2.dsc
a1b8033f1a1fd6385f4820b01ee32d8eca818409235d22caf5119e0078c7525b 685770 zziplib_0.13.62.orig.tar.bz2
d24e6c96ac2fb5c17976b1eb8c9bcf7e2a5aba064037ace213eaf10aeae87792 17044 zziplib_0.13.62-3.2~deb9u2.debian.tar.xz
81067d50fab8422febc0ad2508bb31db6f619308edff7cdcf3a3d7ffb656180f 5942 libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
7560609813891b5ac44fd133195e0e1f113bc8909883293bab24a457e0f49128 56262 libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb
e7c9e8c123cc7ed6b434db34fa49ac976765b4d7dd194ef542ebca9cfb7251c6 112162 libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb
b5ae6aff1aff734aa5c18a244beb14cf4d9bae82e8e6b035bc7d93ff59912496 4358 zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
33d7b09e6a523689fcba3365dc4c7511fe6e0481eb430c2ec899f77119b78c42 42304 zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb
16ead250ba08234157e1dd9e452a51a755ac2d0ee7a11627dc17167cba0ea0cf 7750 zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo
Files:
7c643b5aa60f8b3dda2fda4658bd2994 2223 libs optional zziplib_0.13.62-3.2~deb9u2.dsc
5fe874946390f939ee8f4abe9624b96c 685770 libs optional zziplib_0.13.62.orig.tar.bz2
4215a9f882e7e5940452aef349bd4538 17044 libs optional zziplib_0.13.62-3.2~deb9u2.debian.tar.xz
2a0114bb99bc5f035842a21e4929229d 5942 debug extra libzzip-0-13-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
77104e1eda3b3629c41f682524e77864 56262 libs optional libzzip-0-13_0.13.62-3.2~deb9u2_amd64.deb
5416458a9cf6a3f66dfde731f240b23b 112162 libdevel optional libzzip-dev_0.13.62-3.2~deb9u2_amd64.deb
1b456571b8114bbc11041078780f21b6 4358 debug extra zziplib-bin-dbgsym_0.13.62-3.2~deb9u2_amd64.deb
6873fb63f7b165f671d3af1da6fff593 42304 utils optional zziplib-bin_0.13.62-3.2~deb9u2_amd64.deb
a97576bd1d8b6aaa05f376f07fc64edf 7750 libs optional zziplib_0.13.62-3.2~deb9u2_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=G3Ep
-----END PGP SIGNATURE-----