-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 15 Mar 2024 22:56:38 +0200 Source: fontforge Binary: fontforge fontforge-dbgsym fontforge-extras fontforge-extras-dbgsym fontforge-nox fontforge-nox-dbgsym libfontforge4 libfontforge4-dbgsym python3-fontforge python3-fontforge-dbgsym Architecture: s390x Version: 1:20201107~dfsg-4+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: s390x Build Daemon (zani) Changed-By: Adrian Bunk Description: fontforge - font editor fontforge-extras - font editor - extra programs fontforge-nox - font editor - non-X version libfontforge4 - font editor - runtime library python3-fontforge - font editor - Python bindings Closes: 1064967 Changes: fontforge (1:20201107~dfsg-4+deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload. * CVE-2024-25081: Spline Font command injection via crafted filenames * CVE-2024-25082: Spline Font command injection via crafted archives or compressed files * Closes: #1064967 Checksums-Sha1: 8e48e70887ac4a4df93548c9ad41310000bc3794 2817260 fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 89ac7e6747ede017be2ffe342cf9e8ce16d23a96 373560 fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb d98f465d8b19a55363ba32414a86f8b4f359f168 298832 fontforge-extras_20201107~dfsg-4+deb11u1_s390x.deb 809ac5218a6bc41ebe351ab3e43575f0354cabd1 7808 fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb d2b9a8d274327128eb8fba9c253630b0da1e2936 38644 fontforge-nox_20201107~dfsg-4+deb11u1_s390x.deb 8e9f59a58fe0c3df2f317067c7212067c5652eee 18517 fontforge_20201107~dfsg-4+deb11u1_s390x-buildd.buildinfo 6a094db41e8d1b3dfea3fa686893860639e403ea 1261760 fontforge_20201107~dfsg-4+deb11u1_s390x.deb 899e94c13aa22a42e79cbb167e11ceb6bcc19ffb 4107956 libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 3471d8b2bcb3554b42fd72f2829f2394fac7922e 1741836 libfontforge4_20201107~dfsg-4+deb11u1_s390x.deb 5730c271cdee16918b2f32e8eb813fd1bae6bf49 6320 python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 51a1c568500458811bab740ef09fadb89373afea 33676 python3-fontforge_20201107~dfsg-4+deb11u1_s390x.deb Checksums-Sha256: 9fea78344bb40393b9bf079c21be3d4ca3e022e0a4ba44e6f2a7439691f7f9f9 2817260 fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb b1782b0ae08985c68de6fe3aa4d2d4587964c8705eb36bd0b24887b51096cdd8 373560 fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 9029f82f99a486f7ea73592fdc68547efb17ec3028cce7c7603176ce46e43698 298832 fontforge-extras_20201107~dfsg-4+deb11u1_s390x.deb af5e9d5e9ae1e758af51fd507064de57a3eeb79e2adb45138ffde5af43c20b86 7808 fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 7bb7090476017f0b1337c3f9d80416b465101fb9a9608e584b93d800afbd4da1 38644 fontforge-nox_20201107~dfsg-4+deb11u1_s390x.deb 9f765410f5232d79d54a79d71bf17f2b8e495c641eba88e6eee6039b19b0c2ee 18517 fontforge_20201107~dfsg-4+deb11u1_s390x-buildd.buildinfo 6a6b4335d3a1466790efcdc905dda4516722c5b9b684e8dd721e72d0f36a68b6 1261760 fontforge_20201107~dfsg-4+deb11u1_s390x.deb dd8e21e3f9f9f53b898bee2792c389b0bfd6a7513e0a06dc0f4dfdd93a687c64 4107956 libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 588a23f342774c8805f521652ecd9b9b1fb7efcf8453f3dd19347e195bd6a23d 1741836 libfontforge4_20201107~dfsg-4+deb11u1_s390x.deb f43fb6938da4b07557ba758e974bf3c3616e67a739e2fe6aa80a94cea02f5f64 6320 python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 4b7b8d110cb91a5f4503a5d99ee9cad3cc5feaeef0377d26a9ab512ed9a4a6cb 33676 python3-fontforge_20201107~dfsg-4+deb11u1_s390x.deb Files: b0f45df640057aa8ed3550656baded12 2817260 debug optional fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 3b62ed23d26d618764c383918ff68fff 373560 debug optional fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 7f363aa5f1fb628923922734005161a9 298832 fonts optional fontforge-extras_20201107~dfsg-4+deb11u1_s390x.deb d93c9b7085fed8028cba54898538e390 7808 debug optional fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb fb291c5f7321602058455ed4e5d26b9a 38644 fonts optional fontforge-nox_20201107~dfsg-4+deb11u1_s390x.deb 2300c2753d04e2201c1bbf6be829bd0f 18517 fonts optional fontforge_20201107~dfsg-4+deb11u1_s390x-buildd.buildinfo 7445b6acd4a9b2c449b6db6e14bfe019 1261760 fonts optional fontforge_20201107~dfsg-4+deb11u1_s390x.deb 29053d8d53d52c257d3bed6a8d5bec7e 4107956 debug optional libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 409502458c053e75445bbcb712fa3e0f 1741836 libs optional libfontforge4_20201107~dfsg-4+deb11u1_s390x.deb 51b869455c0ae3c93ffffce45b46a3e9 6320 debug optional python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_s390x.deb 3716304f87cbd66ed683795931d69420 33676 python optional python3-fontforge_20201107~dfsg-4+deb11u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETdQgQHyJW2hcXsTC6b+AMjGgQHgFAmX1nO8ACgkQ6b+AMjGg QHglAw/+ISS8ctUs4Vel1RAR24yJf/wbb/oHPeDf3z/8FfyLzqo+FxEPE42OeZ4g XVUkOaMBcbycoXkGcz0Se0f0JJKpqIngFkI3frkfz1nQiUDMKhI/9hVZlTNDJds8 MAQssbadeHOf44dGFWIYCId/1/REs7zGYghA3o0cDUlIXmMpW0qcB8U1OHFMcs9F /5fh6MY6HnOf3GkpUiCqh7N6Fi59QQ7H7em79Q2zrOvgWE1EpahKUMv92XRuojuh DOXbiguctKrvvDnkrV6UqkiOa2LYSCTFfLCu6DkzeHNXI6eM8tiS0u4nz4xP2uel I5VcQJG0DWk5UYAnnMlnu/QH769ilqguc7aPQMpMp8qE5lMP3dHJAlyTsGssJHw/ N9zv0JR1rM44DH4rMYXbIsLqlMeEV2zT3FYaQA/tiRxiV+NcxjrFFlFhWh+FcCCW 6RvMcUa5QN4/oPKG4eTg5VX1JeqbSPuqo6tCj4qwvsnuscPEa95X8tDODaCN4j8i Vje3Tywl3RMelxToAAeWcfkEJv6oW3EC1DPvTT/QZCNXyWuvOmIH2KdOKp2RkkKx Fs2BLbDo3UsB9PlhJQ1SNV+kUz8czAT4WdkvX9UW6pX0SDhjN0OHE3clDAjPRlJc Aznm89df64kNsJafGQHkE0mH4VHNz2XF/BTsXhtC3ial3ZPR0GE= =YhYO -----END PGP SIGNATURE-----