Accepted tiff 3.9.4-5+squeeze12 (source all i386) into squeeze-lts

2015-05-15 Thread Ben Hutchings
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Wed, 06 May 2015 22:37:44 +0100
Source: tiff
Binary: libtiff4 libtiffxx0c2 libtiff4-dev libtiff-tools libtiff-opengl 
libtiff-doc
Architecture: source all i386
Version: 3.9.4-5+squeeze12
Distribution: squeeze-lts
Urgency: high
Maintainer: Jay Berkenbilt 
Changed-By: Ben Hutchings 
Description: 
 libtiff-doc - TIFF manipulation and conversion documentation
 libtiff-opengl - TIFF manipulation and conversion tools
 libtiff-tools - TIFF manipulation and conversion tools
 libtiff4   - Tag Image File Format (TIFF) library
 libtiff4-dev - Tag Image File Format library (TIFF), development files
 libtiffxx0c2 - Tag Image File Format (TIFF) library -- C++ interface
Closes: 773987
Changes: 
 tiff (3.9.4-5+squeeze12) squeeze-lts; urgency=high
 .
   * Non-maintainer upload by the Squeeze LTS team
   * Fixes for most of CVE-2014-8127 (out-of-bounds reads; bugs #2484, #2485,
 #2486)
   * Fixes for CVE-2014-8128 (out-of-bounds writes; bugs #2489, #2492, #2493,
 #2495, #2499, #2501)
   * Fix for CVE-2014-8129 (out-of-bounds read and write in NeXT 2-bit Grey
 Scale Compression Algorithm decoder; bugs #2487, #2488)
   * Fix for CVE-2014-9330 (out-of-bounds read in bmp2tiff; bug #2494)
 (Closes: #773987)
   * Fix for CVE-2014-9655 (out-of-bounds reads in NeXT 2-bit Grey
 Scale Compression Algorithm decoder and YCbCr-RGB converters)
Checksums-Sha1: 
 b47fae13bec01e9eca5a33a193f7df63a8146845 1853 tiff_3.9.4-5+squeeze12.dsc
 e2d53b28493575568a8b918ddc516939fea0ad1e 41899 
tiff_3.9.4-5+squeeze12.debian.tar.gz
 60a2c9fe17312c52b66406742dfd70283e332f7b 403450 
libtiff-doc_3.9.4-5+squeeze12_all.deb
 d32ea263eb3e4d23d79cccb81de74ec68b4b5650 184302 
libtiff4_3.9.4-5+squeeze12_i386.deb
 ea697802f8ae9ad06a63db86d1b2880ef6460c1e 60124 
libtiffxx0c2_3.9.4-5+squeeze12_i386.deb
 a9c519d893badc482f70c908dfe0649fb36e8ab7 301954 
libtiff4-dev_3.9.4-5+squeeze12_i386.deb
 48b0dcc43a08c38dfc99f942152890d767e72dce 289738 
libtiff-tools_3.9.4-5+squeeze12_i386.deb
 58c14309fb873111a18963d3a606ccfddbf9ff19 64486 
libtiff-opengl_3.9.4-5+squeeze12_i386.deb
Checksums-Sha256: 
 b4df3e9b0ecb209756175a92f92caab2f7e30366d48f05241cde3db8d3297091 1853 
tiff_3.9.4-5+squeeze12.dsc
 1a9619f5ec33692a1adc1b3db220f749b8d5e6af15d716bd4c8142a82ba32fad 41899 
tiff_3.9.4-5+squeeze12.debian.tar.gz
 10f794934fbbf7fda4d36b4e421974ea0a8026f5ef4afcbaf86dfa0813086139 403450 
libtiff-doc_3.9.4-5+squeeze12_all.deb
 0446fa9378538b832fe0942c435ec29be9bad4f8ec707d83aa624c3eb3dfbcf8 184302 
libtiff4_3.9.4-5+squeeze12_i386.deb
 ba301d61a3d4d83decaf65bc78a37133ede1f17643b00d402d71b76b6f3f22ae 60124 
libtiffxx0c2_3.9.4-5+squeeze12_i386.deb
 42cf6c9cfd1d815fcf33c4558207c27f1d2b8735bb1016a9662afae7ad21ab54 301954 
libtiff4-dev_3.9.4-5+squeeze12_i386.deb
 9248275599cb7ee365027bb3bb8a935caea2b49463bb7bf1abbbd8dbd6e24e87 289738 
libtiff-tools_3.9.4-5+squeeze12_i386.deb
 7d494a0faf076103dc448330b5ed506e8ad807e4502a17b702f2bc3d44aa497a 64486 
libtiff-opengl_3.9.4-5+squeeze12_i386.deb
Files: 
 a55318d03cb77d7d130fb308a064facc 1853 libs optional tiff_3.9.4-5+squeeze12.dsc
 250b78a23663d20ef936f8b03b998d90 41899 libs optional 
tiff_3.9.4-5+squeeze12.debian.tar.gz
 150deaa293181ba1df4b436c1156b34e 403450 doc optional 
libtiff-doc_3.9.4-5+squeeze12_all.deb
 1735310e7235b97433a8d204d5791f06 184302 libs optional 
libtiff4_3.9.4-5+squeeze12_i386.deb
 3a52f05a87c5f2bf8f6aee384b07f300 60124 libs optional 
libtiffxx0c2_3.9.4-5+squeeze12_i386.deb
 2a1af22c4710062bd8dc32013176538d 301954 libdevel optional 
libtiff4-dev_3.9.4-5+squeeze12_i386.deb
 e2242143f3c0d3aefab1e21c26a22a5d 289738 graphics optional 
libtiff-tools_3.9.4-5+squeeze12_i386.deb
 26b78de1750fb760420400a9504df33a 64486 graphics optional 
libtiff-opengl_3.9.4-5+squeeze12_i386.deb

-BEGIN PGP SIGNATURE-
Version: GnuPG v1
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=uKHV
-END PGP SIGNATURE-


-- 
To UNSUBSCRIBE, email to debian-lts-changes-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: https://lists.debian.org/e1ytq3m-0002hj...@franck.debian.org



Accepted dpkg 1.15.12 (source i386 all) into squeeze-lts

2015-05-15 Thread Guillem Jover
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Fri, 01 May 2015 22:22:35 +0200
Source: dpkg
Binary: libdpkg-dev dpkg dpkg-dev libdpkg-perl dselect
Architecture: source i386 all
Version: 1.15.12
Distribution: squeeze-lts
Urgency: high
Maintainer: Dpkg Developers 
Changed-By: Guillem Jover 
Description: 
 dpkg   - Debian package management system
 dpkg-dev   - Debian package development tools
 dselect- Debian package management front-end
 libdpkg-dev - Debian package management static library
 libdpkg-perl - Dpkg perl modules
Closes: 617923 695919
Changes: 
 dpkg (1.15.12) squeeze-lts; urgency=high
 .
   [ Ben Hutchings ]
   * Search and backport required security patches.
 .
   [ Raphaƫl Hertzog ]
   * Improve parser in Dpkg::Control::Hash to not require an empty line
 before the PGP signature. Closes: #617923
 Thanks to Roger Leigh for the initial patch.
   * Drop myself from Uploaders.
 .
   [ Guillem Jover ]
   * Fix OpenPGP armored signature parsing, to be resilient against doctored
 input, including source package control files. Closes: #695919
   * Make sure the OpenGPG armor contains a signature block, even on EOF.
   * Do not accept Armor Header Lines inside a paragraph.
   * Fix OpenPGP Armor Header Line parsing in Dpkg::Control::Hash. We should
 only accept [\r\t ] as trailing whitespace, although RFC4880 does not
 clarify what whitespace really maps to, we should really match the GnuPG
 implementation anyway, as that's what we use to verify the signatures.
 Reported by Jann Horn . Fixes CVE-2015-0840.
Checksums-Sha1: 
 80bd1e23f6d374db591169a92c186db866e4b7b1 1780 dpkg_1.15.12.dsc
 f453c6d74e559253599d8a92b40015788a8ffb4f 5253946 dpkg_1.15.12.tar.bz2
 7c40d09600238efe88e76fbbf918c799cc3d7bad 428642 libdpkg-dev_1.15.12_i386.deb
 dd12d9278f81a3307a3064b23e8a1593af3269a3 2340918 dpkg_1.15.12_i386.deb
 4004c017a6ace8d3597afdd1d866c9c3183b0701 903246 dselect_1.15.12_i386.deb
 76ab6ab17ae24250d6679c7cbf7afb02300d4457 816864 dpkg-dev_1.15.12_all.deb
 b02134fc11988ebd42af58b8030b050381e8dcf7 699052 libdpkg-perl_1.15.12_all.deb
Checksums-Sha256: 
 969d1fbf856942efa05d2f648ab1cb69de0b0078acd4804d69e37b3a19c37c69 1780 
dpkg_1.15.12.dsc
 b877f06bcdc2c2054ee0aa1e857e641ece92f3f9f3ef286dfb4f59f077c6a4b7 5253946 
dpkg_1.15.12.tar.bz2
 04e04182ab194390d97625ae1ab2eb350cdccdf641272a55b8044384dd910ef7 428642 
libdpkg-dev_1.15.12_i386.deb
 2cf11c62ef9cf22887d4b33504d53e69dae419852317fb75566ffec0a0c59854 2340918 
dpkg_1.15.12_i386.deb
 33449d92224ee6ff8709e34d367ac7713c6da302b5d7472d46bc149d2239f6b9 903246 
dselect_1.15.12_i386.deb
 a66a3a5ee30a8878a9da5ee41eae3608f4b6b2b4a64bae29c1676f7cac927ad5 816864 
dpkg-dev_1.15.12_all.deb
 6e91a3ea48bc452941e1ce2b34bfaf86f89c34e95edf5a3a0bc0f4a0e63eedae 699052 
libdpkg-perl_1.15.12_all.deb
Files: 
 b3d0f90e706c1dfb8f0cbb499fe4d4a4 1780 admin required dpkg_1.15.12.dsc
 9baaf06479132b667cbff3f323cf5ec8 5253946 admin required dpkg_1.15.12.tar.bz2
 3b02d3e8f360ec7eef3ec0e7e6cc 428642 libdevel optional 
libdpkg-dev_1.15.12_i386.deb
 6d9d3b174e43a54d9b94fd3b7e572901 2340918 admin required dpkg_1.15.12_i386.deb
 9da6863f744ea2ad644d4c3ece141eb1 903246 admin optional dselect_1.15.12_i386.deb
 7166f8a9df5b9bc9c17bcc050c604628 816864 utils optional dpkg-dev_1.15.12_all.deb
 a65d579ef5e43f1902b76a86ad43574d 699052 perl optional 
libdpkg-perl_1.15.12_all.deb

-BEGIN PGP SIGNATURE-
Version: GnuPG v1
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=LtMH
-END PGP SIGNATURE-


-- 
To UNSUBSCRIBE, email to debian-lts-changes-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: https://lists.debian.org/e1ytngq-0006rq...@franck.debian.org