Format: 1.8 Date: Wed, 19 Feb 2020 09:52:00 -0500 Source: openjpeg2 Binary: libopenjp2-7 libopenjp2-7-dev libopenjp2-tools libopenjp3d-tools libopenjp3d7 libopenjpip-dec-server libopenjpip-server libopenjpip7 Architecture: riscv64 Version: 2.3.1-1ubuntu4 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libopenjp2-7 - JPEG 2000 image compression/decompression library libopenjp2-7-dev - development files for OpenJPEG, a JPEG 2000 image library libopenjp2-tools - command-line tools using the JPEG 2000 library libopenjp3d-tools - command-line tools using the JPEG 2000 - 3D library libopenjp3d7 - JP3D (JPEG 2000 / Part 10) image compression/decompression librar libopenjpip-dec-server - tool to allow caching of JPEG 2000 files using JPIP protocol libopenjpip-server - JPIP server for JPEG 2000 files libopenjpip7 - JPEG 2000 Interactive Protocol Changes: openjpeg2 (2.3.1-1ubuntu4) focal; urgency=medium . * SECURITY UPDATE: denial of service via excessive iteration - debian/patches/CVE-2019-12973-1.patch: detect invalid file dimensions early in src/bin/jp2/convertbmp.c. - debian/patches/CVE-2019-12973-2.patch: avoid potential infinite loop in src/bin/jp2/convertbmp.c. - CVE-2019-12973 * SECURITY UPDATE: heap overflow in opj_t1_clbl_decode_processor - debian/patches/CVE-2020-6851.patch: reject images whose coordinates are beyond INT_MAX in src/lib/openjp2/j2k.c. - CVE-2020-6851 * SECURITY UPDATE: another heap overflow in opj_t1_clbl_decode_processor - debian/patches/CVE-2020-8112.patch: avoid integer overflow in src/lib/openjp2/tcd.c. - CVE-2020-8112 Checksums-Sha1: abc6466520d10824b2461baeb61f3bee13f00a00 473188 libopenjp2-7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 9354d3c9c1d3d48cbda69be91289365b1a671457 26732 libopenjp2-7-dev_2.3.1-1ubuntu4_riscv64.deb 0adf4496b047ab2f5c0790d590f18d39309ddd32 135704 libopenjp2-7_2.3.1-1ubuntu4_riscv64.deb 7cb4ad6b3d48d3518129e2b46a10775528b482bf 410400 libopenjp2-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 21da3f41e60bd6f8d045bc78edb4e4332d21bd8b 79856 libopenjp2-tools_2.3.1-1ubuntu4_riscv64.deb 004028c95ce7ed053a42503308f957b40055c8b5 72656 libopenjp3d-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb ce714037221d143c816c45f6b0c24b1622e73d98 28204 libopenjp3d-tools_2.3.1-1ubuntu4_riscv64.deb edf85a7afcf2fd7c8a12f1e95cc0894aea7ca8b9 192676 libopenjp3d7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 91344d0be27266d18b9d175e215b2db2ef21a253 71940 libopenjp3d7_2.3.1-1ubuntu4_riscv64.deb 98c329c2bdb994a6985326a8ed91fd2a1a88ea20 22280 libopenjpip-dec-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 91f5335bbd18c577ecff22bb0fed957c6edc6de4 15156 libopenjpip-dec-server_2.3.1-1ubuntu4_riscv64.deb d75ff7f62b1012bc3e4119a5af94547ece2ebb05 112996 libopenjpip-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb d4bd217ea441634547cfdea4ca444bc1cd916438 35432 libopenjpip-server_2.3.1-1ubuntu4_riscv64.deb 8d82862c3c43345b32059c994578c22e8c720c66 159380 libopenjpip7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 1693dbb3b71de3062f577f119d6e150c44da050a 42284 libopenjpip7_2.3.1-1ubuntu4_riscv64.deb d8fd8faaeb9299cded6c2217349acc6c948e0fd1 11843 openjpeg2_2.3.1-1ubuntu4_riscv64.buildinfo Checksums-Sha256: c4cdb6c6c6021bb429c661ff5c4fe06ab6959b691523ea7d5fa0e80294f66ca7 473188 libopenjp2-7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 49e33eddc954fc3d6cca9078100983e6bde4a39f71313355a59e1e954ed83064 26732 libopenjp2-7-dev_2.3.1-1ubuntu4_riscv64.deb 3ec4d62124a1bc8a01c16b1ebe942b2f7c357a010b0c1d6df41f10a114d448f5 135704 libopenjp2-7_2.3.1-1ubuntu4_riscv64.deb 2c0a9298075c82444cd3b774ac9275126f8f3b19b79eca4d1194f6c5ce71715c 410400 libopenjp2-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 2b962e95c836b2260a1395d6f77104bfd5fc6b3ae488856b225c5c4fb2f14824 79856 libopenjp2-tools_2.3.1-1ubuntu4_riscv64.deb e9366d282eb93caceb0a2d51bc95645a8588da79c776c1a63d1517c1a1d06cdd 72656 libopenjp3d-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 8a9149978fac9299ad55406b7ec201b6c11da74527ab3547932c228090bc5c30 28204 libopenjp3d-tools_2.3.1-1ubuntu4_riscv64.deb 91e9176fc1410dee059be1f621e8c86c3ede610d6246d10eb6f4fcddbb5ca199 192676 libopenjp3d7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 2b77d67b3df96918cfd2bea42c506d468ea35db9b44668e51d5c8b11a6e36828 71940 libopenjp3d7_2.3.1-1ubuntu4_riscv64.deb aae3de3ff8bc391abc9beb997b6caecde81c8b1e8430bddbd5ca323f7a2e2409 22280 libopenjpip-dec-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 41bb9209fcefc81096efe4d9556189cee596ab71bd8be5c1f34dd74932d0e390 15156 libopenjpip-dec-server_2.3.1-1ubuntu4_riscv64.deb dc7e080c8972c23314b333eba7fa8d9344ec7674f81645c3c1532d4a8a9f31ee 112996 libopenjpip-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 5227a4124ea3b5752f91b60df455d519c27578bc1d9f90609ed8bda459ca42ad 35432 libopenjpip-server_2.3.1-1ubuntu4_riscv64.deb ba566e0ed09e6d2f56d6f36ab49dc50a48ee5fd063234f6d9593b43d57f8e5bb 159380 libopenjpip7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb d7777366e8a797ef128009c6373c40270b0f57394fd80b64a7eb4fc9db1d1f63 42284 libopenjpip7_2.3.1-1ubuntu4_riscv64.deb 63be0359f24eec06a8239b479ddd5744f5807aa71841c46a2441266e4dad46f3 11843 openjpeg2_2.3.1-1ubuntu4_riscv64.buildinfo Files: 4ee4d9b1c54daa870479014b0d483a3e 473188 debug optional libopenjp2-7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 1ec341ef450f977f99911a67747502e3 26732 libdevel optional libopenjp2-7-dev_2.3.1-1ubuntu4_riscv64.deb e69508e053d3b752c4c8888b1536cadb 135704 libs optional libopenjp2-7_2.3.1-1ubuntu4_riscv64.deb 9a23f6824826aeb305d6faeefef3fdcf 410400 debug optional libopenjp2-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 149990ca59ee898c3a46164b6eb66fa9 79856 graphics optional libopenjp2-tools_2.3.1-1ubuntu4_riscv64.deb 1bac54b23a58d502561f34ce8c66dda9 72656 debug optional libopenjp3d-tools-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb a6feee801e8eaae42697aa2aaa6c2e0e 28204 graphics optional libopenjp3d-tools_2.3.1-1ubuntu4_riscv64.deb 5f561bccefc938cdc70032d767c14d24 192676 debug optional libopenjp3d7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 9dc463050bc655ea4217f07ebb3016eb 71940 libs optional libopenjp3d7_2.3.1-1ubuntu4_riscv64.deb b3e1bd25402803c5adb7d6730943d4cb 22280 debug optional libopenjpip-dec-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb 6539bac008fbc269d30899eba44c5e4e 15156 graphics optional libopenjpip-dec-server_2.3.1-1ubuntu4_riscv64.deb 6cfd0f6ffa1f320bf755d8659f66b5db 112996 debug optional libopenjpip-server-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb b752354cbbdf0e8d36fe6f84501b07ec 35432 graphics optional libopenjpip-server_2.3.1-1ubuntu4_riscv64.deb 161d67f2c19c0aa87af35e5868e25aff 159380 debug optional libopenjpip7-dbgsym_2.3.1-1ubuntu4_riscv64.ddeb bfaadc3cea4a6cc02932285af0d143d9 42284 libs optional libopenjpip7_2.3.1-1ubuntu4_riscv64.deb 80f2e6109b6f2b557a7c5eb2566e0a92 11843 libs optional openjpeg2_2.3.1-1ubuntu4_riscv64.buildinfo Original-Maintainer: Debian PhotoTools Maintainers