Format: 1.8 Date: Mon, 28 Jan 2019 09:58:13 -0300 Source: poppler Binary: libpoppler82 libpoppler-dev libpoppler-private-dev libpoppler-glib8 libpoppler-glib-dev libpoppler-glib-doc gir1.2-poppler-0.18 libpoppler-qt5-1 libpoppler-qt5-dev libpoppler-cpp0v5 libpoppler-cpp-dev poppler-utils Architecture: s390x Version: 0.71.0-2ubuntu3 Distribution: disco-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: gir1.2-poppler-0.18 - GObject introspection data for poppler-glib libpoppler-cpp-dev - PDF rendering library -- development files (CPP interface) libpoppler-cpp0v5 - PDF rendering library (CPP shared library) libpoppler-dev - PDF rendering library -- development files libpoppler-glib-dev - PDF rendering library -- development files (GLib interface) libpoppler-glib-doc - PDF rendering library -- documentation for the GLib interface libpoppler-glib8 - PDF rendering library (GLib-based shared library) libpoppler-private-dev - PDF rendering library -- private development files libpoppler-qt5-1 - PDF rendering library (Qt 5 based shared library) libpoppler-qt5-dev - PDF rendering library -- development files (Qt 5 interface) libpoppler82 - PDF rendering library poppler-utils - PDF utilities (based on Poppler) Changes: poppler (0.71.0-2ubuntu3) disco; urgency=medium . * SECURITY UPDATE: infinite recursion via crafted file - debian/patches/CVE-2018-16646.patch: avoid cycles in PDF parsing in poppler/Parser.cc, poppler/XRef.h. This patch also includes the regression fix in check entry. - CVE-2018-16646 * SECURITY UPDATE: denial of service via reachable abort - debian/patches/CVE-2018-19058.patch: check for stream before calling stream methods when saving an embedded file in poppler/FileSpec.cc. - CVE-2018-19058 * SECURITY UPDATE: denial of service via out-of-bounds read - debian/patches/CVE-2018-19059.patch: check for valid embedded file before trying to save it in utils/pdfdetach.cc. - CVE-2018-19059 * SECURITY UPDATE: denial of service via NULL pointer dereference - debian/patches/CVE-2018-19060.patch: check for valid file name of embedded file in utils/pdfdetach.cc. - CVE-2018-19060 Checksums-Sha1: af93082fa601401596f52ef573552cf80f199bdd 19268 gir1.2-poppler-0.18_0.71.0-2ubuntu3_s390x.deb bfcd1de2fbf5cd55ccf2926edf04d3799005ec91 9776 libpoppler-cpp-dev_0.71.0-2ubuntu3_s390x.deb 45d4156ba378c65bb754ac8837a5fc2d4166ee49 827416 libpoppler-cpp0v5-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 1784fb88abebc04317b79ad0d8dc5e5373ad6fc2 31952 libpoppler-cpp0v5_0.71.0-2ubuntu3_s390x.deb b1a7ba6d6add54155714142274bbf63af08f8105 5100 libpoppler-dev_0.71.0-2ubuntu3_s390x.deb 8f9c6e8338ca2e78212b47c328207007a432578c 49720 libpoppler-glib-dev_0.71.0-2ubuntu3_s390x.deb 92111d91e86e640b06aa4b35b751b6b20a6335cb 1739700 libpoppler-glib8-dbgsym_0.71.0-2ubuntu3_s390x.ddeb f4933d4fa101490dd1702ffc2ce0312acf1bf07e 96352 libpoppler-glib8_0.71.0-2ubuntu3_s390x.deb 779257f6187d83fd4b97a5934caaf62496255077 170496 libpoppler-private-dev_0.71.0-2ubuntu3_s390x.deb aaa2223736c1b7ca37bda6ff6a6e8f0c5d4dd38c 4424160 libpoppler-qt5-1-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 80d9368eb76a2efb08ff61b2eac8e0e738ae64da 128140 libpoppler-qt5-1_0.71.0-2ubuntu3_s390x.deb 3c4385085b72151891e28bdeb0a4048e71bb8cb3 33252 libpoppler-qt5-dev_0.71.0-2ubuntu3_s390x.deb a573ef52bd9adcd555fb7f849e404f985cff4978 7930456 libpoppler82-dbgsym_0.71.0-2ubuntu3_s390x.ddeb dc590912a6bcd32fca86714fa55de41e4249e49a 809428 libpoppler82_0.71.0-2ubuntu3_s390x.deb 16ce8a4a0e5854f1e07493b01e3b769da8cb24c3 3014448 poppler-utils-dbgsym_0.71.0-2ubuntu3_s390x.ddeb a0519274a8343a2a1b9b43afc2d202101597a5cc 152496 poppler-utils_0.71.0-2ubuntu3_s390x.deb c9b2aa5da6b77408271a2d2955496e059ce6242d 17788 poppler_0.71.0-2ubuntu3_s390x.buildinfo Checksums-Sha256: 1a6481e3b16d2c8c07c1be2b8bb047dfb0fbe3cdd5b09a78c56912a1e08a8a11 19268 gir1.2-poppler-0.18_0.71.0-2ubuntu3_s390x.deb 4716da4dcbe957717cbf198b8dc41e71f77302a3aa45b294df3cd7c21d35e523 9776 libpoppler-cpp-dev_0.71.0-2ubuntu3_s390x.deb af032b648a943622f7e3576343ab7b9ae973e8d2a004f2b9f111ba3d805154c9 827416 libpoppler-cpp0v5-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 20b2e2d2c35f3c7b3eded94485ff121619c2e19b2b077148663fc392693c90b2 31952 libpoppler-cpp0v5_0.71.0-2ubuntu3_s390x.deb 7ac3bae35e4a256589cada58e104a56de5cb45db70e4d56b5803f6486d3dc9f8 5100 libpoppler-dev_0.71.0-2ubuntu3_s390x.deb b9a7dcd8d520ee0b3cba5175b9b542986285b7c90fea3e9b7985410d074c2757 49720 libpoppler-glib-dev_0.71.0-2ubuntu3_s390x.deb fbbb3b48a515d50b1c2ce311db5828ab5e380af23e9b2830d4338a6c72846829 1739700 libpoppler-glib8-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 47b007a2340c403babf9fc3e04f61765798feab45adc27c2849175122f4b74d1 96352 libpoppler-glib8_0.71.0-2ubuntu3_s390x.deb e56f33138b4856fdb842da6229898a2ec551775b38aa43b1e2de7dfc1b605cfd 170496 libpoppler-private-dev_0.71.0-2ubuntu3_s390x.deb e3335c4f8b3e4d982bfad736c795a33438f13b502e2a3781bc7d21c239c82de2 4424160 libpoppler-qt5-1-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 01f3fa83a1baff6be71282401b10dd0d883006dba7ed7219b4d974ae8b765e82 128140 libpoppler-qt5-1_0.71.0-2ubuntu3_s390x.deb 6edb2a60db94c8dfdcc4f77dac68de94b5ac4ea2eb56e569f158d1d2cab7ef5d 33252 libpoppler-qt5-dev_0.71.0-2ubuntu3_s390x.deb f7f22d92fc6b83fd24e492e07d01037cd9c7644721562a21da6780b6b5ab5735 7930456 libpoppler82-dbgsym_0.71.0-2ubuntu3_s390x.ddeb f3fba4d44458eabd2bcf3bbbb3f4f87139a80a8dc48123caabcf38c61323b801 809428 libpoppler82_0.71.0-2ubuntu3_s390x.deb 8b9a688b76a37bd0ab3ad27aa7fc584497bf1e607461974b736a484d09f002fd 3014448 poppler-utils-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 52b814ef2498fbf02a7aa85810765128b0cdb99aca1a919b1f704d71f6440a33 152496 poppler-utils_0.71.0-2ubuntu3_s390x.deb ccc80e5a4bf3d41cd56a5890c42a45de51897416ca6582d41762bcb529859f90 17788 poppler_0.71.0-2ubuntu3_s390x.buildinfo Files: 4ec56bff08cdab032f1d8507ff6e2d89 19268 introspection optional gir1.2-poppler-0.18_0.71.0-2ubuntu3_s390x.deb 491a0eacd5ef3add74492bb8960143f8 9776 libdevel optional libpoppler-cpp-dev_0.71.0-2ubuntu3_s390x.deb 982e69325a14ca7b15bb5cbad80279fe 827416 debug optional libpoppler-cpp0v5-dbgsym_0.71.0-2ubuntu3_s390x.ddeb e1095c40616495c580ac763eb6b7f6f9 31952 libs optional libpoppler-cpp0v5_0.71.0-2ubuntu3_s390x.deb c3c420b18539f9e8bf841d6c3372923a 5100 libdevel optional libpoppler-dev_0.71.0-2ubuntu3_s390x.deb 61b013e4b15edcad17c17461b68ac67f 49720 libdevel optional libpoppler-glib-dev_0.71.0-2ubuntu3_s390x.deb 5a345d8730dcd9c37fbbcff9a8bceae7 1739700 debug optional libpoppler-glib8-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 7878a356783c65e3722c59cae7772103 96352 libs optional libpoppler-glib8_0.71.0-2ubuntu3_s390x.deb 3158f62e59eaea66c6fcfa804c42263a 170496 libdevel optional libpoppler-private-dev_0.71.0-2ubuntu3_s390x.deb 910429cc08afa12b226160f48f4e1d62 4424160 debug optional libpoppler-qt5-1-dbgsym_0.71.0-2ubuntu3_s390x.ddeb ce565556e3b5da59267ebba2fff6151c 128140 libs optional libpoppler-qt5-1_0.71.0-2ubuntu3_s390x.deb 33b565e6392a223b9364bd33a425c44d 33252 libdevel optional libpoppler-qt5-dev_0.71.0-2ubuntu3_s390x.deb fd84d3321a49bd91ed5953c4389f11de 7930456 debug optional libpoppler82-dbgsym_0.71.0-2ubuntu3_s390x.ddeb 9efafe47bb51d4abc9ee8d6c77dca768 809428 libs optional libpoppler82_0.71.0-2ubuntu3_s390x.deb cdccf624c11aa15058a490d071d92fbc 3014448 debug optional poppler-utils-dbgsym_0.71.0-2ubuntu3_s390x.ddeb d267013e5267feeb89d34ec8bc387ba2 152496 utils optional poppler-utils_0.71.0-2ubuntu3_s390x.deb 5b42fb99b8e6853f67680fdb3988531c 17788 devel optional poppler_0.71.0-2ubuntu3_s390x.buildinfo Original-Maintainer: Debian freedesktop.org maintainers