-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 08 Aug 2025 19:13:23 +0100 Source: glib2.0 Architecture: source Version: 2.84.4-1 Distribution: unstable Urgency: medium Maintainer: Debian GNOME Maintainers <pkg-gnome-maintainers@lists.alioth.debian.org> Changed-By: Simon McVittie <smcv@debian.org> Changes: glib2.0 (2.84.4-1) unstable; urgency=medium . * d/control, d/gbp.conf: Use debian/forky packaging branch. The debian/latest branch is now tracking 2.85.x for Debian experimental. * New upstream stable release - Ensure that generating temporary file names does not access memory outside the intended array of alphanumeric characters if a long-running program generates billions of temporary file names (CVE-2025-7039, glib#3716 upstream; believed to be unlikely to be exploitable in practice) - Fix the intended ability for g_settings_bind_with_mapping_closures() to copy a value to the destination object (glib!4667 upstream) - If creating a thread pool fails, report a recoverable error instead of crashing with a fatal error (glib#3712 upstream) - Fix several memory leaks (glib#3721, glib!4702 upstream) Checksums-Sha1: 208d9ce62c47252684db13a864a3fe50dff9b151 4940 glib2.0_2.84.4-1.dsc ade0b6ba8926c1cc81e28c86ae2652f47ceff885 660708 glib2.0_2.84.4.orig-unicode-data.tar.xz 7d021a627322082de873c483b540443c524712e1 5618200 glib2.0_2.84.4.orig.tar.xz 9ee2834de727c948efef7029b48ec3866fea758c 138468 glib2.0_2.84.4-1.debian.tar.xz 3d8a679fa5efca056b1632ae44b8b8d0fdf9bd0b 7417 glib2.0_2.84.4-1_source.buildinfo Checksums-Sha256: 01954e815609e30d6b3015e0e7816d7370c2b3aef676741760c07b05e1157f7d 4940 glib2.0_2.84.4-1.dsc c1742461e8c0e9673a3453a3127671169de9cb0138493e5c916f1b989530efcd 660708 glib2.0_2.84.4.orig-unicode-data.tar.xz 8a9ea10943c36fc117e253f80c91e477b673525ae45762942858aef57631bb90 5618200 glib2.0_2.84.4.orig.tar.xz d3145dbf37dd3d1499577ca7ecd159b5fddb4956b2259f220b960d6942d7eb2f 138468 glib2.0_2.84.4-1.debian.tar.xz 383b97f1e591c9beb7c56339c7190372f365abd572973d1daf58893f8e945c5f 7417 glib2.0_2.84.4-1_source.buildinfo Files: 408f9abf4ba04b513699b920ec8574bf 4940 libs optional glib2.0_2.84.4-1.dsc 2b38b2623d9b97ba703de7c94fd25ba2 660708 libs optional glib2.0_2.84.4.orig-unicode-data.tar.xz 5655d0ff809b98dd77c02490609fadde 5618200 libs optional glib2.0_2.84.4.orig.tar.xz 207d3b20fde7c36b93dd91195b1d2315 138468 libs optional glib2.0_2.84.4-1.debian.tar.xz a5bcbee0396cc0d249c4eb594dd4f01b 7417 libs optional glib2.0_2.84.4-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEegc60a5pT6Jb/2LlI1wJnT6zMHYFAmiXIN0ACgkQI1wJnT6z MHYo9xAAsC0oPmp3Iji4GXe7p32PhKFDapKipUysUfsdMY51XnGZ85ELp/1xuE2V tcLU5YFMrYWtcg10G/7plmVQyQqnUZQziL8keCVgkp/hUjkODDIg9ZaarDHi21xr xOIYS7OcUKSJL1rtRr8KPwK6yZLdbm7fvIAYjvqR1/DnfLhZ8ITqGHmMoJdv5aFf /xNWb0WaU8SVX9AauQhyLeR02dBCDjfK/Skn0XirGBRTwlHMnt32zlHsYZM7ZWs2 i4AAySKSwq9kqJEsWVwLpgAcpNr8s6qD2g/HWjC2Y5hWh39fyFJY+Vu+2dslGcds koVFQ9jQyZu8XqvjQCdjqCcdAsG5Sp2sOW0qmjadsQOHJGUVeIZu5WsJ0xDZLAMt ukNYdrEXWYk60GWWxJtc8jUulb3gpkpayqyaM/v3YmZ5bIEpmcRn4tdRiiPMNig8 gLjN68utUSP5pbsBJP1tRU1zYqFG7XNlueXidwd0zcaX61d9iUd6WZfexhagf4Br TYptNd6fixFv1IsK/WFQ49Fsu2B1JCtPZP64V9Gn6UsVKTpRA5dNTSMYPAE4Fc40 SurPEJCczr6R/tO2p+Pfq0ciKg2OtJicpXAN5bDYlUQspZ5CBEpcSLtT/3nCAr4g IfuYL/Vkrj8R0+x6PgIR7PwDh3/c4Mmhf4WRcFElauy8/ZsE8+Q= =IN9r -----END PGP SIGNATURE-----
Attachment:
pgpywsWh4Ofps.pgp
Description: PGP signature