-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 11 Apr 2025 22:49:23 +0200 Source: graphicsmagick Binary: graphicsmagick graphicsmagick-dbg libgraphics-magick-perl libgraphicsmagick++-q16-12 libgraphicsmagick++1-dev libgraphicsmagick-q16-3 libgraphicsmagick1-dev Architecture: s390x Version: 1.4+really1.3.40-4+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: s390x Build Daemon (zandonai) Changed-By: Salvatore Bonaccorso Description: graphicsmagick - collection of image processing tools graphicsmagick-dbg - format-independent image processing - debugging symbols libgraphics-magick-perl - format-independent image processing - perl interface libgraphicsmagick++-q16-12 - format-independent image processing - C++ shared library libgraphicsmagick++1-dev - format-independent image processing - C++ development files libgraphicsmagick-q16-3 - format-independent image processing - C shared library libgraphicsmagick1-dev - format-independent image processing - C development files Closes: 1099955 Changes: graphicsmagick (1.4+really1.3.40-4+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. . [ Carlos Henrique Lima Melara ] * d/p/CVE-2025-27795.patch: fix CVE-2025-27795 by adding image dimension resource limits. (Closes: #1099955) . [ Salvatore Bonaccorso ] * ReadJXLImage(): pixel_format.num_channels needs to be 2 for grayscale matte (CVE-2025-32460) Checksums-Sha1: 152ed2bc88bc74f976276b4a20c23cfe03843f4f 4169492 graphicsmagick-dbg_1.4+really1.3.40-4+deb12u1_s390x.deb 65545ae4251e43121f02f34408f64c3fa76241de 11107 graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x-buildd.buildinfo 869efa56f67cd167940aeae078d55f76bc8db018 1019556 graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x.deb b07fad6eb343a5e535004c359b32aa4b729b0089 57656 libgraphics-magick-perl_1.4+really1.3.40-4+deb12u1_s390x.deb bc6189d9ba1ee3367a8d84485d8d938d464e4454 109556 libgraphicsmagick++-q16-12_1.4+really1.3.40-4+deb12u1_s390x.deb b0ad22425846471490ea4a862f9fd40c3cbf80b2 295116 libgraphicsmagick++1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb 0982f1b95dd82327e1934fc3c2c8ef44d86d1a61 1024172 libgraphicsmagick-q16-3_1.4+really1.3.40-4+deb12u1_s390x.deb 8ac6bd9224878ed0f3a5a49dc8823ab69a01bdc1 1289424 libgraphicsmagick1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb Checksums-Sha256: fc93aed6fb355bdf5ec1fbf29d4b4b17df23814e5c11466b144f5ac4c9b6a62f 4169492 graphicsmagick-dbg_1.4+really1.3.40-4+deb12u1_s390x.deb 03fae02aae725c03d5d1b4534c726bf090ee87849a8ece540c3602ab61cefafb 11107 graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x-buildd.buildinfo 5754daae4c061b2b3a645452c4e08cb3aa7210a37b766144a45650e1d1e86407 1019556 graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x.deb 367fa6f4907d6fd3c5498f276ff7894224795255f35b3479f139b044f82a78ce 57656 libgraphics-magick-perl_1.4+really1.3.40-4+deb12u1_s390x.deb e74fca73cc04523a9bdb2823a4914c821d95afcc102abcbf3c665f1a67cf7110 109556 libgraphicsmagick++-q16-12_1.4+really1.3.40-4+deb12u1_s390x.deb e89908f910e6f9eb7bf13262a8b95a664382b4c74d676bc4452ba6c23069bac4 295116 libgraphicsmagick++1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb 09f92300e23217942faf0c80f3ef2705148f4ba0be65294c29f2a16205d0eba1 1024172 libgraphicsmagick-q16-3_1.4+really1.3.40-4+deb12u1_s390x.deb ec33c4916cf5a719688e5ef2094f8d288e5a96bdc0a3b5842af35a9066b1e4ed 1289424 libgraphicsmagick1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb Files: 532d385387fb7fcc5b946c98c44fb51e 4169492 debug optional graphicsmagick-dbg_1.4+really1.3.40-4+deb12u1_s390x.deb 86ed519fc14e37d02c5d22e8f2306a01 11107 graphics optional graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x-buildd.buildinfo 13d0d977a980d7dfc3a9f8e0f9c3e2b6 1019556 graphics optional graphicsmagick_1.4+really1.3.40-4+deb12u1_s390x.deb 6751faa9894d4e7e50fa3b12f04bbe08 57656 perl optional libgraphics-magick-perl_1.4+really1.3.40-4+deb12u1_s390x.deb 502484b6620b2b3f4c3826c4404a3847 109556 libs optional libgraphicsmagick++-q16-12_1.4+really1.3.40-4+deb12u1_s390x.deb 6282840f3bd88c8f602e61ed2af451db 295116 libdevel optional libgraphicsmagick++1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb f69042384d6b3b4e082e8ca8525ad201 1024172 libs optional libgraphicsmagick-q16-3_1.4+really1.3.40-4+deb12u1_s390x.deb c8a487267fd5117c748dab9b36a22c96 1289424 libdevel optional libgraphicsmagick1-dev_1.4+really1.3.40-4+deb12u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEu0D/YpnnSxv8epH9AKOyQzsWVasFAmf5lnwACgkQAKOyQzsW Vau22Q//bq0XD4HdHxqFwtijqzBJnhLWu15RPfCIBUYhna9ORm3V/0OrdmyxWOBJ UrQYFdqgRzDphHTE4mY0IqMmB3YZy5xc5nj+B0zmmcJo2SEu8NOdT36kCbs+89F3 uI4VK6eVD9OC8MJ4Bdk5zOVmbuqgECLXKJT5LQd7+bQjzTlSlYXFyfYvYL+eMNON s8b+GypEFmakM7zQaI3FDJAZcfBUkTxrfdVLPrP+3lq+b2XAs7dlBL+TF849WtJl NFfiupObPx1ld5yABkzJLWVkDf3GmDY0GW67KYR54BR6/6LpI5POKFEyJSkPj54v vgHG1AKigpyaWLUJHskA8yVEDuSLVBdVR2Llcc+0lCJMIvEx/X7FlNgqNb1JxvSz L85SBSZ85qHnYVZMKw7A+/X59mjOWl69N+HLIs0fp9YwchZ4vqeCUaX7idZqn1rg eMtrsPre4lgDcP5ym5d5znHBtM+ii2JMDJB/I/atZ98TLY810ZLPpD13O1KWeBOE ygjpwOSzMg0ZZie7sTMCVf3t7x6ABFGtjV2rB2/12PZ5E0OsBJ6EdKWFiWVoBy// U9jKQtmE5KJzT7oB6GY3M94Hs1Cg8/nJctTcm82eYwnjEKpAtx+dg9UWngmpkVSU Bk5Sl2dxCsgnEDdcw1VXhjK9JGqlLq+Iig3kExs5YZs4R3XfSPA= =rW0K -----END PGP SIGNATURE-----