Accepted jasper 1.900.1-13+deb7u4 (source amd64) into oldstable-proposed-updates->oldstable-new, oldstable-proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 06 Mar 2016 15:09:28 +0100
Source: jasper
Binary: libjasper1 libjasper-dev libjasper-runtime
Architecture: source amd64
Version: 1.900.1-13+deb7u4
Distribution: wheezy-security
Urgency: high
Maintainer: Roland Stigge <stigge@antcom.de>
Changed-By: Salvatore Bonaccorso <carnil@debian.org>
Description:
libjasper-dev - Development files for the JasPer JPEG-2000 library
libjasper-runtime - Programs for manipulating JPEG-2000 files
libjasper1 - JasPer JPEG-2000 runtime library
Closes: 812978 816625 816626
Changes:
jasper (1.900.1-13+deb7u4) wheezy-security; urgency=high
.
* Non-maintainer upload by the Security Team.
* CVE-2016-1577: Prevent double-free in jas_iccattrval_destroy()
(Closes: #816625)
* CVE-2016-2089: matrix rows_ NULL pointer dereference in jas_matrix_clip()
(Closes: #812978)
* CVE-2016-2116: Prevent jas_stream_t memory leak in
jas_iccprof_createfrombuf() (Closes: #816626)
Checksums-Sha1:
2a5b39408c15feffff975d5b349ce9a419cd287c 1878 jasper_1.900.1-13+deb7u4.dsc
485ed72f72da1b2092fb4f4217580f9a34630fc3 34913 jasper_1.900.1-13+deb7u4.debian.tar.gz
b804f5eeb5e6cb00f2436d133145238007a12eaf 160230 libjasper1_1.900.1-13+deb7u4_amd64.deb
22e63a35ee293bf2c37ec271e31ec6d603b7c308 569330 libjasper-dev_1.900.1-13+deb7u4_amd64.deb
a6501e43744c1ea26fcac1d73a6a50bf7bca263a 27404 libjasper-runtime_1.900.1-13+deb7u4_amd64.deb
Checksums-Sha256:
45322a04fbbdfdba0f58747417fd92bf07e7ffcf612695c095c02c2b87a21cbe 1878 jasper_1.900.1-13+deb7u4.dsc
61049f1047774db9abdc399dcc8c8eb153bba15dddc81c1b95e7e973c6765c6d 34913 jasper_1.900.1-13+deb7u4.debian.tar.gz
8c92d4be18de78060fa888d506c290dd5162397979d858f318508c10225e6660 160230 libjasper1_1.900.1-13+deb7u4_amd64.deb
32a83763556a28ca0f2dbaff434cd0710ac68952a316271213e028cdc19c4eb9 569330 libjasper-dev_1.900.1-13+deb7u4_amd64.deb
98118f1e51119f3cf8cdc892b021c1809e830ea56873eff16a59ed6868489490 27404 libjasper-runtime_1.900.1-13+deb7u4_amd64.deb
Files:
db90675529886eb7523042aa6733604f 1878 graphics optional jasper_1.900.1-13+deb7u4.dsc
dcde5273ae8c4104535af22256f1fd85 34913 graphics optional jasper_1.900.1-13+deb7u4.debian.tar.gz
10f4a6e7ded8f06075694d588621a69a 160230 libs optional libjasper1_1.900.1-13+deb7u4_amd64.deb
8aeb17922bcf60467da1f707dbc866b0 569330 libdevel optional libjasper-dev_1.900.1-13+deb7u4_amd64.deb
afa8d77c698a502158a2d8c4fa1b3da7 27404 graphics optional libjasper-runtime_1.900.1-13+deb7u4_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=jfRU
-----END PGP SIGNATURE-----
Reply to: