Format: 1.8 Date: Thu, 21 Mar 2019 13:15:30 -0400 Source: ghostscript Binary: ghostscript ghostscript-dbg ghostscript-x libgs-dev libgs9 Architecture: s390x Version: 9.26~dfsg+0-0ubuntu7 Distribution: disco-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: ghostscript - interpreter for the PostScript language and for PDF ghostscript-dbg - interpreter for the PostScript language and for PDF - Debug symbo ghostscript-x - interpreter for the PostScript language and for PDF - X11 support libgs-dev - interpreter for the PostScript language and for PDF - Development libgs9 - interpreter for the PostScript language and for PDF - Library Changes: ghostscript (9.26~dfsg+0-0ubuntu7) disco; urgency=medium . * SECURITY UPDATE: superexec operator is available - debian/patches/CVE-2019-3835-pre1.patch: Have gs_cet.ps run from gs_init.ps in Resource/Init/gs_cet.ps, Resource/Init/gs_init.ps. - debian/patches/CVE-2019-3835-pre2.patch: Undef /odef in Resource/Init/gs_cet.ps, Resource/Init/gs_init.ps. - debian/patches/CVE-2019-3835-1.patch: restrict superexec and remove it in Resource/Init/gs_cet.ps, Resource/Init/gs_dps1.ps, Resource/Init/gs_fonts.ps, Resource/Init/gs_init.ps, Resource/Init/gs_ttf.ps, Resource/Init/gs_type1.ps. - debian/patches/CVE-2019-3835-2.patch: obliterate superexec in Resource/Init/gs_init.ps, psi/icontext.c, psi/icstate.h, psi/zcontrol.c, psi/zdict.c, psi/zgeneric.c. - CVE-2019-3835 * SECURITY UPDATE: forceput in DefineResource is still accessible - debian/patches/CVE-2019-3838-1.patch: make a transient proc executeonly in Resource/Init/gs_res.ps. - debian/patches/CVE-2019-3838-2.patch: an extra transient proc needs executeonly in Resource/Init/gs_res.ps. - CVE-2019-3838 Checksums-Sha1: df4dfce47c17223753e7bfd09f5d1be5fafa20ef 15226036 ghostscript-dbg_9.26~dfsg+0-0ubuntu7_s390x.deb ec3508f693e758d50f31b8e99810127fbfc445e4 42188 ghostscript-x_9.26~dfsg+0-0ubuntu7_s390x.deb 88f0d030cd3dcfefa5639f8a7a04c63761b80291 12060 ghostscript_9.26~dfsg+0-0ubuntu7_s390x.buildinfo c115092ff12bda2d900e742efb4ddbf73295ab4b 51608 ghostscript_9.26~dfsg+0-0ubuntu7_s390x.deb 52636692af305b5852b61c18c1b8583eec748265 25512 libgs-dev_9.26~dfsg+0-0ubuntu7_s390x.deb 3df9a17a0a06451cab70a60bef056908c3aabac5 2218380 libgs9_9.26~dfsg+0-0ubuntu7_s390x.deb Checksums-Sha256: c9e5ff0886fde958c607b839c7fb6971001069151e49f5ac13841f09c039210c 15226036 ghostscript-dbg_9.26~dfsg+0-0ubuntu7_s390x.deb a0f8eaa40aa0c7eed2d6f3a14bf97e0d9f70c59c67b25c69ea569bfbb245812f 42188 ghostscript-x_9.26~dfsg+0-0ubuntu7_s390x.deb 5e5832f8450de4b0a2aa8a2226a590ef54d503183fb0dbf75211a4e369ba4b98 12060 ghostscript_9.26~dfsg+0-0ubuntu7_s390x.buildinfo 9a0f6f9f7066f9dd26e7b1fd0f67ae97df3c10a1e817bfe271fb0ef0dfd8bcc6 51608 ghostscript_9.26~dfsg+0-0ubuntu7_s390x.deb 434c22dbad2cdce1eda91b4de4ee54b77f9f2648cfc15ff3f3e3985b6f4a4e3f 25512 libgs-dev_9.26~dfsg+0-0ubuntu7_s390x.deb 7a2a8cb7cc28a3f1b00be13cdd94c94bb96692c94a5888f9ce64bc858e4eaaf8 2218380 libgs9_9.26~dfsg+0-0ubuntu7_s390x.deb Files: 926a74174e4b747593d79f21ac4441ee 15226036 debug extra ghostscript-dbg_9.26~dfsg+0-0ubuntu7_s390x.deb 47d52bbbf34dee6d0c36f6de2db180ad 42188 text optional ghostscript-x_9.26~dfsg+0-0ubuntu7_s390x.deb 53b65f47a1b53a6ea50b90520220e4ab 12060 text optional ghostscript_9.26~dfsg+0-0ubuntu7_s390x.buildinfo da63e078e36392874beb498740ec25d8 51608 text optional ghostscript_9.26~dfsg+0-0ubuntu7_s390x.deb 644f0c639147bdac1cfb15ca3ad2b966 25512 libdevel optional libgs-dev_9.26~dfsg+0-0ubuntu7_s390x.deb 440c9c623e776416a4c9d6ca72167bb0 2218380 libs optional libgs9_9.26~dfsg+0-0ubuntu7_s390x.deb Original-Maintainer: Debian Printing Team