-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Feb 2025 21:59:03 +0100 Source: dcmtk Binary: dcmtk dcmtk-dbgsym libdcmtk-dev libdcmtk17 libdcmtk17-dbgsym Architecture: ppc64el Version: 3.6.7-9~deb12u3 Distribution: bookworm Urgency: medium Maintainer: ppc64el Build Daemon (ppc64el-osuosl-02) Changed-By: Étienne Mollier Description: dcmtk - OFFIS DICOM toolkit command line utilities libdcmtk-dev - OFFIS DICOM toolkit development libraries and headers libdcmtk17 - OFFIS DICOM toolkit runtime libraries Closes: 1070207 1098373 1098374 Changes: dcmtk (3.6.7-9~deb12u3) bookworm; urgency=medium . * Team upload. * Introduce patch series to fix CVE-2024-28130. This change introduces the patches: * 0001-Fixed-unchecked-typecasts-of-DcmItem-search-results.patch * 0002-Fixed-unchecked-typecasts-and-fixed-LUT-handling.patch * 0003-Fixed-wrong-error-handling-previous-commit.patch mapping to upstream commits: * dc6a2446dc03c9db90f82ce17a597f2cd53776c5 * 601b227eecaab33a3a3a11dc256d84b1a62f63af * 7d54f8efec995e5601d089fa17b0625c2b41af23 with the nuance that upstream check functions are inlined, in order to avoid an ABI breakage. Thanks to Adrian Bunk (Closes: #1070207) * 0009-CVE-2025-25475.patch: new: fix CVE-2025-25475. (Closes: #1098373) * 0010-CVE-2025-25474.patch: new: fix CVE-2025-25474. (Closes: #1098374) * 0011-CVE-2025-25472.patch: new: fix CVE-2025-25472. Checksums-Sha1: c1e9cbf0c5a3048c1ce7309abed21219ff210a84 4960260 dcmtk-dbgsym_3.6.7-9~deb12u3_ppc64el.deb 64d458b46641065606562f7320089e02d4d5edd5 9107 dcmtk_3.6.7-9~deb12u3_ppc64el-buildd.buildinfo 2fcaaf839752b81b4a3146ae568e08b22b72b4fa 837992 dcmtk_3.6.7-9~deb12u3_ppc64el.deb 8bcd76216dc9b2452970208b7b7f1636d9f15c2e 1013128 libdcmtk-dev_3.6.7-9~deb12u3_ppc64el.deb 6d8bbbaca2229ff1801bc4b27d52fc66fe537857 64549864 libdcmtk17-dbgsym_3.6.7-9~deb12u3_ppc64el.deb edfe5b535cc0f651a5fab8b9a613fcfda1e999be 4810008 libdcmtk17_3.6.7-9~deb12u3_ppc64el.deb Checksums-Sha256: deda428fb573c361ee8b542f0cd6641313269e13965972f0d10a34ad76ab82ac 4960260 dcmtk-dbgsym_3.6.7-9~deb12u3_ppc64el.deb caa3cee8198868189e56f69b4c0a23687515bec2f15e936bf69ac011e1960882 9107 dcmtk_3.6.7-9~deb12u3_ppc64el-buildd.buildinfo df04dc2f764d9cb18de851d9226ae671371ec28bd1a6c02584bff325f9ad53dd 837992 dcmtk_3.6.7-9~deb12u3_ppc64el.deb 6d4fd7635dd22533e60496a3c6a295f39fe366c9f7cf2073abcf46385a2d3621 1013128 libdcmtk-dev_3.6.7-9~deb12u3_ppc64el.deb 9ff61a20d914215e07788badc31e5b557d20667dbb0989e4fbe42a2323c721c9 64549864 libdcmtk17-dbgsym_3.6.7-9~deb12u3_ppc64el.deb d2a73f410696fd106c084b2bb9618f4b3d2ec4e3f79df83764bf3c567a4f65c7 4810008 libdcmtk17_3.6.7-9~deb12u3_ppc64el.deb Files: 395161a1bea93c4ad7a5e1b20c064f36 4960260 debug optional dcmtk-dbgsym_3.6.7-9~deb12u3_ppc64el.deb ae33de37f5b4731c64bb29b140abb984 9107 science optional dcmtk_3.6.7-9~deb12u3_ppc64el-buildd.buildinfo 5d9793048c1f3ebb32d019bb313af8d3 837992 science optional dcmtk_3.6.7-9~deb12u3_ppc64el.deb c741e404b909163c7341ed4fbffc09e6 1013128 libdevel optional libdcmtk-dev_3.6.7-9~deb12u3_ppc64el.deb f833986bc18432369189906aa5ac3462 64549864 debug optional libdcmtk17-dbgsym_3.6.7-9~deb12u3_ppc64el.deb 60640cc3af0e9b98a3dad133d464d8ec 4810008 libs optional libdcmtk17_3.6.7-9~deb12u3_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE0YcVZfZCWQv84jpRNcqbeolus3sFAmfMrMsACgkQNcqbeolu s3tPyw/8CzPPQgtBDo4jBQ6+slMQ/w5KITgN1undWULU7uzCjtByAFYEDgV9eCpo qiZv3ILNkqLY8VwMX+3wNOGKl1lp3TljPblPsG+JFZzY7Nc7tix3NI0P4AK7iROx RZWOEeUs2QCFHe0w1fciWKSG4ekA6avYFKR7c+zofWDM1ehIVxcYrKO2m+vmRGzn hkH9wIuDqvQmXUABncBwKKl1IkwqP3tchlwQj9MLX5bsSiI39do7vkgoTigODbLW XSvWZXkZ5HzdM4u8plTBAeBV+7T87HyinMEWV7yuWoc2s8E7NAztVPz/EOhk+5mU FnFrd0LtoMXTCsYywk4q9x+0x3uJiPcmPBYxHVZOaIzPdjE5S6ACty7zEjOUDGiZ ILC6kuLgpK2/eXmFv39vLJ0cHLJEgJO7RWqAi4n6bVeXnk2VfiVyzZmap4MCFcVL AkoPZRAcpXVLGsyeLJ7AC5mfapYDdXaPxie0w6JIq89WFuvXjoiRKr/HVN3JWz5L qCHa9KSn4v2iKrsmmR+pmRUyFCXA8zk3DOdWjC7uYgUKh+MzuLy4TQM0UW4+eLky BIrYBPrYg2YAZiEtZbjbhB0xhOTLWICKQG7oLEwamVdTDWQnqfwvLbo6vpJ88ip+ 3ZLXsB5/OaIRQwO8F8PGnZgRDt1grOh5G7SAuL72lOC6rnDGoqo= =tipA -----END PGP SIGNATURE-----