Format: 1.8 Date: Sat, 16 Feb 2019 15:19:56 +0000 Source: graphicsmagick Binary: graphicsmagick libgraphicsmagick-q16-3 libgraphicsmagick1-dev libgraphicsmagick++-q16-12 libgraphicsmagick++1-dev libgraphics-magick-perl graphicsmagick-imagemagick-compat graphicsmagick-libmagick-dev-compat graphicsmagick-dbg Architecture: arm64 Version: 1.4~hg15896-1 Distribution: disco-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Laszlo Boszormenyi (GCS) Description: graphicsmagick - collection of image processing tools graphicsmagick-dbg - format-independent image processing - debugging symbols graphicsmagick-imagemagick-compat - image processing tools providing ImageMagick interface graphicsmagick-libmagick-dev-compat - image processing libraries providing ImageMagick interface libgraphics-magick-perl - format-independent image processing - perl interface libgraphicsmagick++-q16-12 - format-independent image processing - C++ shared library libgraphicsmagick++1-dev - format-independent image processing - C++ development files libgraphicsmagick-q16-3 - format-independent image processing - C shared library libgraphicsmagick1-dev - format-independent image processing - C development files Changes: graphicsmagick (1.4~hg15896-1) unstable; urgency=high . * Mercurial snapshot, fixing the following security issues: - ReadMNGImage(): Quit processing and report error upon failure to insert MNG background layer preventing out of memory issues, - ReadMIFFImage(): Improve pixel buffer calculations to defend against overflow, - ReadTIFFImage(): Make sure that image is in DirectClass mode and ignore any claimed colormap when the image is read using various functions, - ReadWPGImage(): Assure that all colormap entries are initialized, - DecodeImage(): Avoid a one-byte over-read of pixels heap allocation, - ReadTIFFImage(): Assure that opacity channel is initialized in the RGBAStrippedMethod case, - ReadMNGImage(): Bound maximum loop iterations by subrange as a primitive means of limiting resource consumption preventing out of memory issues, - CVE-2019-7397: WritePDFImage(): Make sure to free 'xref' before returning preventing several memory leaks, - ReadTIFFImage(): For planar TIFF, make sure that pixels are initialized in case some planes are missing. Checksums-Sha1: 33638248f7900aeffcdc644dd1808d5d9d0bc389 3980032 graphicsmagick-dbg_1.4~hg15896-1_arm64.deb b6d0bcbd15ade3c7327b7b30cc7b546046cdde27 9609 graphicsmagick_1.4~hg15896-1_arm64.buildinfo 9f49c25a09ccbcc2745e5106774eb3846f11403a 674012 graphicsmagick_1.4~hg15896-1_arm64.deb 01e5a3559f781771797238259e95e13ee52f6e3f 48108 libgraphics-magick-perl_1.4~hg15896-1_arm64.deb 6cae4e054fa14568ba1623350559bacb38fc9e3d 93836 libgraphicsmagick++-q16-12_1.4~hg15896-1_arm64.deb fd4f8aa87cbc2ecc4bc4a1cd9a7c492d53e9129e 268632 libgraphicsmagick++1-dev_1.4~hg15896-1_arm64.deb 39ccf8ccaa479e235d94a387be35b3a54edd3e56 1014428 libgraphicsmagick-q16-3_1.4~hg15896-1_arm64.deb 2fdb4f8338aa20ef73242e6ffe87eede126524f5 1312100 libgraphicsmagick1-dev_1.4~hg15896-1_arm64.deb Checksums-Sha256: fd23bf1c4d7d38f9c6fbba0ceb298a38dadeb50ec497ae619071b05c8710531f 3980032 graphicsmagick-dbg_1.4~hg15896-1_arm64.deb fef5b6453db7336f189f275a114c526edf4e5118c5d740c9e2ae6b0d95894b3c 9609 graphicsmagick_1.4~hg15896-1_arm64.buildinfo faae7ed21832dd449c37227302c060300964f58af59c427c5ebaadf86f4074fb 674012 graphicsmagick_1.4~hg15896-1_arm64.deb d49919476a37cd864c8101e721cb0afa02989edbba46ae1c4049b77905387dd6 48108 libgraphics-magick-perl_1.4~hg15896-1_arm64.deb 75e1ab763ce620f0c8b936852513c54588d68017d2651b1a79656c352c263a28 93836 libgraphicsmagick++-q16-12_1.4~hg15896-1_arm64.deb d10ca114fec196a44499dea1cf4773e2a8fbcd4d2bff8dab32152e7f3d326e3f 268632 libgraphicsmagick++1-dev_1.4~hg15896-1_arm64.deb b841dd4fd280f4848c258b647c8f747afad9f3c270508d37e334ffc1f64d5b30 1014428 libgraphicsmagick-q16-3_1.4~hg15896-1_arm64.deb 60bb0906dd27e2db7a8824c87e3abf8b3c506bf48ada4fbb78ad028568f7746e 1312100 libgraphicsmagick1-dev_1.4~hg15896-1_arm64.deb Files: 224de263c7246a94d810021dcb13ad70 3980032 debug optional graphicsmagick-dbg_1.4~hg15896-1_arm64.deb 39661286f5002009edf4edeaacf9b50f 9609 graphics optional graphicsmagick_1.4~hg15896-1_arm64.buildinfo 5cfaffb9613f96a69dcca0d944968d26 674012 graphics optional graphicsmagick_1.4~hg15896-1_arm64.deb 487612fbc7fe50e2743a8051e3afd12a 48108 perl optional libgraphics-magick-perl_1.4~hg15896-1_arm64.deb fb26f9571f2e17606f39804bba43cf47 93836 libs optional libgraphicsmagick++-q16-12_1.4~hg15896-1_arm64.deb 84c3ae3cb096be311ad5113c947d344b 268632 libdevel optional libgraphicsmagick++1-dev_1.4~hg15896-1_arm64.deb 6f5d9a31b40f3077c1f02e595b6756d3 1014428 libs optional libgraphicsmagick-q16-3_1.4~hg15896-1_arm64.deb 059d7ef972588807254882a0e376066a 1312100 libdevel optional libgraphicsmagick1-dev_1.4~hg15896-1_arm64.deb