-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Feb 2025 21:59:03 +0100 Source: dcmtk Binary: dcmtk dcmtk-dbgsym libdcmtk-dev libdcmtk17 libdcmtk17-dbgsym Architecture: armhf Version: 3.6.7-9~deb12u3 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Étienne Mollier Description: dcmtk - OFFIS DICOM toolkit command line utilities libdcmtk-dev - OFFIS DICOM toolkit development libraries and headers libdcmtk17 - OFFIS DICOM toolkit runtime libraries Closes: 1070207 1098373 1098374 Changes: dcmtk (3.6.7-9~deb12u3) bookworm; urgency=medium . * Team upload. * Introduce patch series to fix CVE-2024-28130. This change introduces the patches: * 0001-Fixed-unchecked-typecasts-of-DcmItem-search-results.patch * 0002-Fixed-unchecked-typecasts-and-fixed-LUT-handling.patch * 0003-Fixed-wrong-error-handling-previous-commit.patch mapping to upstream commits: * dc6a2446dc03c9db90f82ce17a597f2cd53776c5 * 601b227eecaab33a3a3a11dc256d84b1a62f63af * 7d54f8efec995e5601d089fa17b0625c2b41af23 with the nuance that upstream check functions are inlined, in order to avoid an ABI breakage. Thanks to Adrian Bunk (Closes: #1070207) * 0009-CVE-2025-25475.patch: new: fix CVE-2025-25475. (Closes: #1098373) * 0010-CVE-2025-25474.patch: new: fix CVE-2025-25474. (Closes: #1098374) * 0011-CVE-2025-25472.patch: new: fix CVE-2025-25472. Checksums-Sha1: b65ebf33828e3e1fd4e547218b3f8d773f3deb08 4759396 dcmtk-dbgsym_3.6.7-9~deb12u3_armhf.deb df7d22da1997736f396dd6c457cfb4cd8873958b 8952 dcmtk_3.6.7-9~deb12u3_armhf-buildd.buildinfo 32e0b8015df43d82ca3bef2e37db3acae945d87d 834888 dcmtk_3.6.7-9~deb12u3_armhf.deb d6c6cac396a1912d7622e1da4c0dc5a98a6e3a72 1013100 libdcmtk-dev_3.6.7-9~deb12u3_armhf.deb 04144a25d5eef1a06e4c7c2877d61c0a4bb97828 62695368 libdcmtk17-dbgsym_3.6.7-9~deb12u3_armhf.deb 7373fb19fe19cfdde743116f8bf87f08c178280e 4228992 libdcmtk17_3.6.7-9~deb12u3_armhf.deb Checksums-Sha256: 5fdc148268719ab30f777b9b17379545bb4927bd408482cc9deec1492277c423 4759396 dcmtk-dbgsym_3.6.7-9~deb12u3_armhf.deb 0e111284e4c6cfa63667dac2a275c615a0fd034b3b5f9d674262b633bd6a87bf 8952 dcmtk_3.6.7-9~deb12u3_armhf-buildd.buildinfo 1ff3ef5f956e10ca398828406e127902cf1e0e5e1fa8c54a9ce76b655cd793d1 834888 dcmtk_3.6.7-9~deb12u3_armhf.deb e45bd20089eea31d48624edad37394f27a7524ad828a232b7106801ac971667b 1013100 libdcmtk-dev_3.6.7-9~deb12u3_armhf.deb dd80704c01ef8ac1657dba9962f020ec62000ac9f15139da28ba854891344482 62695368 libdcmtk17-dbgsym_3.6.7-9~deb12u3_armhf.deb bb1ba2b37bc7268d70fe98d3ff336f8e40a610c10c1fb07612cc820811dcf823 4228992 libdcmtk17_3.6.7-9~deb12u3_armhf.deb Files: 321a9c5d9e27c7003ef33e8636fa54ad 4759396 debug optional dcmtk-dbgsym_3.6.7-9~deb12u3_armhf.deb 79084976267ebb1650f3b4a328735c9d 8952 science optional dcmtk_3.6.7-9~deb12u3_armhf-buildd.buildinfo ffc2725538c95b00a762cb43c831912b 834888 science optional dcmtk_3.6.7-9~deb12u3_armhf.deb 7b55eaf08b6a6d911cbed9b0ef6c9025 1013100 libdevel optional libdcmtk-dev_3.6.7-9~deb12u3_armhf.deb a45f587e5bc9645ce50f92d9b7493399 62695368 debug optional libdcmtk17-dbgsym_3.6.7-9~deb12u3_armhf.deb e50ef2e68c6b18048b902ab120e6f0fc 4228992 libs optional libdcmtk17_3.6.7-9~deb12u3_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErcTbumGV7Ig2iXlfQdxRZ9J7nEgFAmfMsjwACgkQQdxRZ9J7 nEjryhAArcLHIsigXTgD705qP22LdNjn8FVcHm+VoSENGCANhnj4APazf9+Om5hz cly+/0Mu+fnruFS4QcHsreOs45G94+qGa1cUbvd+t4IUziOq+mY9CuLlEP3Ezpw9 tGyVXH7HCBrrBpiIqobyDxQrrVdAlyR+lvsATRduC2t6s2Ddbzw2GX3JBEnnHlbG 6mgtoIZCrVNN1z6JqzvDxPWozyOI4WysyrtmDxo72NUoSZu7BMDyvoNB97mH9ycC HJiR++E+URY+C/t82Qsz1BgH7GVS01Fb2y9TYs8DTGnkNJI85ej7630DuXEJIZ3w +5KnbW4v0cqXZhyBrdbHpUexUm0OL9ql7IABmP8upXdbJl5+HoxKzp7/6MRDtxZu En048SAxL4h/KxpB0nqocTFlQYDFwkXo1DTxQwbvltusHmOyWzt1bl+CZJ9s6H9y rY/tX6j+MiOuF/Eu0oWtgQVNCtEFbScJ0kDSV7A2cmBT0yEuCJNmo8C0rznHbD1o C3Yr3CLrKMTOXpvs9g2yzsZmgMQSh+Rddsli6Ah2zFA6afhBLzMjEo/3xpg7b5AW HWupatr5eHbl8UVS4jkhAhj7DzlLOI6+EqZoG+eCcvglzrvt0V0UL/WsBQ1aZoN5 I/HOTdEOy2CNBhFd5+cW/rrI63zoFc5ElSuat1csdcGuhWa1sZA= =WXD5 -----END PGP SIGNATURE-----