Format: 1.8 Date: Wed, 20 Nov 2019 10:07:27 -0500 Source: djvulibre Binary: djview djview3 djvulibre-bin djvulibre-desktop djvuserve libdjvulibre-dev libdjvulibre-text libdjvulibre21 Architecture: all amd64 Version: 3.5.27.1-10ubuntu0.1 Distribution: disco Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: djview - Transition package, djview3 to djview4 djview3 - Transition package, djview3 to djview4 djvulibre-bin - Utilities for the DjVu image format djvulibre-desktop - Desktop support for the DjVu image format djvuserve - CGI program for unbundling DjVu files on the fly libdjvulibre-dev - Development files for the DjVu image format libdjvulibre-text - Linguistic support files for libdjvulibre libdjvulibre21 - Runtime support for the DjVu image format Changes: djvulibre (3.5.27.1-10ubuntu0.1) disco-security; urgency=medium . * SECURITY UPDATE: heap-based buffer overread - debian/patches/CVE-2019-15142.patch: add checks to libdjvu/DjVmDir.cpp. - CVE-2019-15142 * SECURITY UPDATE: infinite loop in bitmap reader - debian/patches/CVE-2019-15143.patch: check return code in libdjvu/GBitmap.cpp, libdjvu/DjVmDir.cpp. - CVE-2019-15143 * SECURITY UPDATE: uncontrolled recursion in sorting - debian/patches/CVE-2019-15144.patch: fix logic in libdjvu/GContainer.h. - CVE-2019-15144 * SECURITY UPDATE: out of bounds read - debian/patches/CVE-2019-15145.patch: check bytes in libdjvu/GBitmap.h. - CVE-2019-15145 * SECURITY UPDATE: NULL pointer dereference in DJVU::filter_fv - debian/patches/CVE-2019-18804.patch: add extra checks to libdjvu/IW44EncodeCodec.cpp, tools/ddjvu.cpp. - CVE-2019-18804 Checksums-Sha1: ffcc159205e9c9ce4b32117051a2051e94c99da7 5224 djview3_3.5.27.1-10ubuntu0.1_all.deb 1e18a421e0fdfce55dd3a0663b395f8e14a9b4b7 5232 djview_3.5.27.1-10ubuntu0.1_all.deb 32317d8508cad08adebb3de42e5c2693bedef458 1640324 djvulibre-bin-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 8347508035c5084ff78338e0c02cee1128d7d724 288952 djvulibre-bin_3.5.27.1-10ubuntu0.1_amd64.deb 194b0c0bf52d05c5513fc74ae20464ca420349ce 78408 djvulibre-desktop_3.5.27.1-10ubuntu0.1_all.deb c35a4ffd4f21631af84af96213a07dd0c3dcbf78 12093 djvulibre_3.5.27.1-10ubuntu0.1_amd64.buildinfo 838fd040d1d367da0b999fe901fc571dc632475f 73056 djvuserve-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 08113942482f7e2062d9b8cd3f21d49acde03b68 20252 djvuserve_3.5.27.1-10ubuntu0.1_amd64.deb 2b722f4f4825da7914ba07fec6fd43a73f48c0c4 2406496 libdjvulibre-dev_3.5.27.1-10ubuntu0.1_amd64.deb 56a574b90c62528bc4687ee521b5fa124a786939 49268 libdjvulibre-text_3.5.27.1-10ubuntu0.1_all.deb dd9553c5d815753f6e4625cac7c7a7784c53f26d 3761612 libdjvulibre21-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb cbc6afce8a8fc3b94c1147b942dc2ecd797faa85 576944 libdjvulibre21_3.5.27.1-10ubuntu0.1_amd64.deb Checksums-Sha256: 03be693e454d7d1ee3294c0c3578c7f6cb3a2fcdff5299d6aa11e7518f510477 5224 djview3_3.5.27.1-10ubuntu0.1_all.deb d30d95ec80f030c01ec77ffd62cd8eb2b0d93a1e41d425ab681c00bc8fdf12ff 5232 djview_3.5.27.1-10ubuntu0.1_all.deb 9a6550cac9f4314f309c97fb271b51f09a5de844115122d1f979ba657d4400ac 1640324 djvulibre-bin-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb c512efe585fa16882c27ba42dec8c4b6088026a3505d391361caf9fa304b97fe 288952 djvulibre-bin_3.5.27.1-10ubuntu0.1_amd64.deb b3264b0a35d362585f2c342fccc62a32115c7c131070341bc14d3153b8d762a1 78408 djvulibre-desktop_3.5.27.1-10ubuntu0.1_all.deb 982db14a9e2c1c8b90fea88c657cd561ebf677e2b442d34ef1eee0ed3198f8b2 12093 djvulibre_3.5.27.1-10ubuntu0.1_amd64.buildinfo 7feb3707169ab50d4062f8211d37f95c888185750c6f72450e2cef418e4133f4 73056 djvuserve-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 20f26db2bc9a700a098462ae04caa3816f1fe3fe748724308b7777a750d36aee 20252 djvuserve_3.5.27.1-10ubuntu0.1_amd64.deb 1784fec6d0471ab0c040c63653db2dc08063071da3bfe7f7ec705d7153862ec9 2406496 libdjvulibre-dev_3.5.27.1-10ubuntu0.1_amd64.deb de48c5b67d56a18cc1b8d5c91e3fcc393dd13cc9c6a0aef5bd2110a578f86f7a 49268 libdjvulibre-text_3.5.27.1-10ubuntu0.1_all.deb f719e6ef9bb27b7d54f439f9a7eebce2ce7bd0a5843dca151256c933cdbe7f42 3761612 libdjvulibre21-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 7c6c4725fc598e6060036f98750fbec6b2b6458914fd08f3cacb96e82817c068 576944 libdjvulibre21_3.5.27.1-10ubuntu0.1_amd64.deb Files: f23d8f6f6ceeab807aae17558455a4de 5224 graphics optional djview3_3.5.27.1-10ubuntu0.1_all.deb b182eb37db8206a724e815c071071848 5232 graphics optional djview_3.5.27.1-10ubuntu0.1_all.deb 60f4e74d69ffe64aaaeb8025958750e7 1640324 debug optional djvulibre-bin-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 94b7f92769164028694136c791ed12ee 288952 graphics optional djvulibre-bin_3.5.27.1-10ubuntu0.1_amd64.deb f7e4bc0e9348b34d5fc808a92b894fed 78408 libs optional djvulibre-desktop_3.5.27.1-10ubuntu0.1_all.deb fd05750c792e4f307bce019cef2b462a 12093 libs optional djvulibre_3.5.27.1-10ubuntu0.1_amd64.buildinfo c84066aa83c578c091963111539f7fc2 73056 debug optional djvuserve-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb 4f9a22ac8ac59e80b09b42e4a8f17e7f 20252 web optional djvuserve_3.5.27.1-10ubuntu0.1_amd64.deb 98868e86fbea6496a055311498db2c34 2406496 libdevel optional libdjvulibre-dev_3.5.27.1-10ubuntu0.1_amd64.deb 79f20a2726e34c0009af0516f4adf79a 49268 libs optional libdjvulibre-text_3.5.27.1-10ubuntu0.1_all.deb af0dd72cf3c3ba2d450ba91dd7099921 3761612 debug optional libdjvulibre21-dbgsym_3.5.27.1-10ubuntu0.1_amd64.ddeb dfabdc61f7a191d7d93fe641e19450d7 576944 libs optional libdjvulibre21_3.5.27.1-10ubuntu0.1_amd64.deb Original-Maintainer: Barak A. Pearlmutter