[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted poppler 25.03.0-10 (source) into unstable



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 02 Oct 2025 15:58:16 -0400
Source: poppler
Built-For-Profiles: noudeb
Architecture: source
Version: 25.03.0-10
Distribution: unstable
Urgency: high
Maintainer: Debian freedesktop.org maintainers <pkg-freedesktop-maintainers@lists.alioth.debian.org>
Changed-By: Jeremy Bícha <jbicha@ubuntu.com>
Closes: 1117046
Launchpad-Bugs-Fixed: 2126687
Changes:
 poppler (25.03.0-10) unstable; urgency=high
 .
   * SECURITY UPDATE: stack consumption & crash
     - debian/patches/CVE-2025-43718.patch: make sure regex doesn't
       stack overflow by limiting it in poppler/PDFDoc.cc
     - CVE-2025-4718 (Closes: #1117046) (LP: #2126687)
Checksums-Sha1:
 200c08889063228bcdc6c0aca555bc0869498bbe 3938 poppler_25.03.0-10.dsc
 d9e10951bb94831fb7444ce0957128466951448c 43108 poppler_25.03.0-10.debian.tar.xz
 3ce5e4230a40173940e483d7a56c81eb2040fdc9 17378 poppler_25.03.0-10_source.buildinfo
Checksums-Sha256:
 2297d69bb2c9ca0b6d3aa44d1b15cfef20f127c11c0573d4fb3e13d5afc432fb 3938 poppler_25.03.0-10.dsc
 253827486b95b50443f3e2109e42e7cacd4400ee79cc11c61f87f94057560897 43108 poppler_25.03.0-10.debian.tar.xz
 e78a26ed0754ac990ff833f13f44a8abdc9265c1a252c9e33756799a9e20550e 17378 poppler_25.03.0-10_source.buildinfo
Files:
 4ee0ba7bc451dd800e70120e3b795fe5 3938 devel optional poppler_25.03.0-10.dsc
 3a13e06528d69cee3b9ed89c56fec904 43108 devel optional poppler_25.03.0-10.debian.tar.xz
 ae65af99059f3abae85feb50e7bf9a69 17378 devel optional poppler_25.03.0-10_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=5TNe
-----END PGP SIGNATURE-----

Attachment: pgpVIppO8MXX9.pgp
Description: PGP signature


Reply to: