-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 11 Apr 2025 22:49:23 +0200 Source: graphicsmagick Binary: graphicsmagick-imagemagick-compat graphicsmagick-libmagick-dev-compat Architecture: all Version: 1.4+really1.3.40-4+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Salvatore Bonaccorso Description: graphicsmagick-imagemagick-compat - image processing tools providing ImageMagick interface graphicsmagick-libmagick-dev-compat - image processing libraries providing ImageMagick interface Closes: 1099955 Changes: graphicsmagick (1.4+really1.3.40-4+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. . [ Carlos Henrique Lima Melara ] * d/p/CVE-2025-27795.patch: fix CVE-2025-27795 by adding image dimension resource limits. (Closes: #1099955) . [ Salvatore Bonaccorso ] * ReadJXLImage(): pixel_format.num_channels needs to be 2 for grayscale matte (CVE-2025-32460) Checksums-Sha1: 85f352b4bd105fc0d1f4c07ec41c45ce07e769cd 14052 graphicsmagick-imagemagick-compat_1.4+really1.3.40-4+deb12u1_all.deb 9f976cfbea6863f05156d922b0f53612f77fbd33 17500 graphicsmagick-libmagick-dev-compat_1.4+really1.3.40-4+deb12u1_all.deb aa615a5db8a617e1addec7ee0d3e04b2c5a8acf8 9560 graphicsmagick_1.4+really1.3.40-4+deb12u1_all-buildd.buildinfo Checksums-Sha256: eb61b8c5e6321b2ee5ac32fe7b5af5e86bf633fa797e95a4204547670a532ef3 14052 graphicsmagick-imagemagick-compat_1.4+really1.3.40-4+deb12u1_all.deb 886d39e18b026d89e10dd7ba4bb5ba459f76bc6783510e8d9187e598f37fad3b 17500 graphicsmagick-libmagick-dev-compat_1.4+really1.3.40-4+deb12u1_all.deb 320c534e958291760d103b876975cdc1948ffd87b250cb2fd378ad67e72bfa1f 9560 graphicsmagick_1.4+really1.3.40-4+deb12u1_all-buildd.buildinfo Files: ee4a26f2d24a6ba5608f6c33c761bd61 14052 graphics optional graphicsmagick-imagemagick-compat_1.4+really1.3.40-4+deb12u1_all.deb 7a32e738a180fed930e587bafbb3fda1 17500 graphics optional graphicsmagick-libmagick-dev-compat_1.4+really1.3.40-4+deb12u1_all.deb 0f717526991338ac449efdaae7b95798 9560 graphics optional graphicsmagick_1.4+really1.3.40-4+deb12u1_all-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEj4Fym5GgeZdPqKhrJm69HxMTN+oFAmf5hr4ACgkQJm69HxMT N+qNCw/6A6QKqSLb1Xl/dnRf7/DMOx6Bteg14ihKcpViS572aOOosp5bmkbsYaW9 Rr7J6ekkzU9/AnMjPFm0DDcD1nbShjr9GdvessTXInFSn3twChZ83kVF3P6D7qUo Wkq66pEiVO2/JnSVl0YmnbxpGKqXO7KCOYQYmQMwGr2o/2ec/FIVDTLWdjnCnEbg LM9Q/6hL/cflV/6covMaOeF6r/pby88pwH9HYiOE8n/0F0Vz3fGd6xJDvNCwBHuu 6Owuxbdzc4DKW8yeQHjjCGN3EMogzPaMOorIQbUY1UJ86Qos4RbAFLhK/T4UG80w FReJz3ugdk1mz6Flqp9RfvSDCtQAPC8d6A1u+nnk5DOtHByQYNQhbFBx4qCT1FgX sOaa8y3zPY+Qu0HF3QKqd/8C/ZcPi0nblTBuc3iqOMow/w7OlXHA/KDobAq8LD1/ goAfkM0X9GZ/HyaLqIE6foatwJmz4Sf967wp+pO3+mT4u5tONgKYyAfJGHS8AYt6 4Yh6HeJjL8CuQHkukN1rQ57OcPMqeF73/27cAT4LhpxgDWZpo0+xwpc5NVEEhNma 7A5vMOjy9BnuhpEawo1JYX0KfAuo3WUbsYW59y/TACQ+D54wjIO8xTutKgPSoRYS t9e79x+aQ+Bg4J71Wk9+4VSkFsuXm6dju4VQAMWljoJDRAkaHPw= =4KlG -----END PGP SIGNATURE-----