-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 15 Mar 2024 22:56:38 +0200 Source: fontforge Binary: fontforge fontforge-dbgsym fontforge-extras fontforge-extras-dbgsym fontforge-nox fontforge-nox-dbgsym libfontforge4 libfontforge4-dbgsym python3-fontforge python3-fontforge-dbgsym Architecture: mipsel Version: 1:20201107~dfsg-4+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: mips64el Build Daemon (mipsel-osuosl-01) Changed-By: Adrian Bunk Description: fontforge - font editor fontforge-extras - font editor - extra programs fontforge-nox - font editor - non-X version libfontforge4 - font editor - runtime library python3-fontforge - font editor - Python bindings Closes: 1064967 Changes: fontforge (1:20201107~dfsg-4+deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload. * CVE-2024-25081: Spline Font command injection via crafted filenames * CVE-2024-25082: Spline Font command injection via crafted archives or compressed files * Closes: #1064967 Checksums-Sha1: a224921d6b150808fb3e69df7c5c87897fb100e1 2811692 fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb fbbd03b632d551960e77076012a11b205d782b6f 376308 fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 5ad13c2bb4e812bbef7ea7e6f03f49a1aca18946 293908 fontforge-extras_20201107~dfsg-4+deb11u1_mipsel.deb 47039a8e52c42a3f69673483331b38fbe8e961de 8072 fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 0aaa6b2fc702328731f8ac5691c39647fb1c6ead 38856 fontforge-nox_20201107~dfsg-4+deb11u1_mipsel.deb 52c3ffa95cf9721cbf119f3e3872a006087c181f 18462 fontforge_20201107~dfsg-4+deb11u1_mipsel-buildd.buildinfo 5896a994c1e3a88414be93af22b60073845a704d 1273688 fontforge_20201107~dfsg-4+deb11u1_mipsel.deb 00bce32f57e0ba1204d504d531a494d7fe612bc2 3984896 libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 303fdf466f53469ac00d57bcc05278dbfc0e8bae 1718076 libfontforge4_20201107~dfsg-4+deb11u1_mipsel.deb 60138365c3204449d521eafe63b5f27d0db11928 6412 python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb b84f5ea966ee773656e5cbc079bd91293f36c25f 33580 python3-fontforge_20201107~dfsg-4+deb11u1_mipsel.deb Checksums-Sha256: bfc3a20c10f6106d886f972374d64ab82984087cf0146fcf5da138bbdc0594b1 2811692 fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 3555a794056500a1674f98c24d4bed78a7f9e78f4c4d27c2317a9f77e3b56791 376308 fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 8a1c7e875bbc4d0361ccc8bb7db7871df9afa0dbdfad4cf96f054cc5132acf9c 293908 fontforge-extras_20201107~dfsg-4+deb11u1_mipsel.deb dca960264d70c57ea1981fc4125d6ac3967dd06be3d7e9bee0b34b38b6e6a5a0 8072 fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb a8c0e4cb7a90ac2afb9d14a1143420757ebefa11b2efc8291adf106693002c9b 38856 fontforge-nox_20201107~dfsg-4+deb11u1_mipsel.deb 22a40a664c3d7b8dda47ed94057b4cf56f2e5a8953523813c8771c3ff7868a6d 18462 fontforge_20201107~dfsg-4+deb11u1_mipsel-buildd.buildinfo 032947fe5676e68d79110e52957199528f189d651de526348eecc11ac29adc57 1273688 fontforge_20201107~dfsg-4+deb11u1_mipsel.deb 2bcadef9103c8c7fbf9109641be922c78373516b0a04497e1e4c4051df6761f3 3984896 libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 0ed1ceb31a519b47ad89896f9a11523c227d5670cbed31754c5dd0f8fe5292ce 1718076 libfontforge4_20201107~dfsg-4+deb11u1_mipsel.deb 849e0d5822137ddef273de7183847885c09ac5437478a4429b1846bcaab5e46e 6412 python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 95813aa5d40b92b17b259f5f145756b5f1b86563b80fe97df65fc752eed9b8e8 33580 python3-fontforge_20201107~dfsg-4+deb11u1_mipsel.deb Files: 452bbc0b108f86569d094d0e786aed9c 2811692 debug optional fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb f1f3561f94f3251e4477b4f695fca5b8 376308 debug optional fontforge-extras-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 69d53a392495b2be8808b03692be333e 293908 fonts optional fontforge-extras_20201107~dfsg-4+deb11u1_mipsel.deb d550b6ad2c98e7494718852bab270d2f 8072 debug optional fontforge-nox-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb fc7f350ca89bafa63e0ca5579bf6c900 38856 fonts optional fontforge-nox_20201107~dfsg-4+deb11u1_mipsel.deb 47358922cef7dfa6e2510c7f846ee879 18462 fonts optional fontforge_20201107~dfsg-4+deb11u1_mipsel-buildd.buildinfo 8a3cb4f75546811cdf45384f412d72f9 1273688 fonts optional fontforge_20201107~dfsg-4+deb11u1_mipsel.deb 69ee13f03637ce5763e679eaa32632de 3984896 debug optional libfontforge4-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb 4a916ee1f815f371937fbdde917d6505 1718076 libs optional libfontforge4_20201107~dfsg-4+deb11u1_mipsel.deb 69cb9ce07c0f20c8a16768f28f5c05c5 6412 debug optional python3-fontforge-dbgsym_20201107~dfsg-4+deb11u1_mipsel.deb c71afff0d177a728cf5a1ebe1a027143 33580 python optional python3-fontforge_20201107~dfsg-4+deb11u1_mipsel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERCYbPUzzGtvq4mlq066AbFDPUlEFAmX1mmQACgkQ066AbFDP UlH64g/+K0MxCXqN9bgQDQlN5CUcichnSR1HTWjllTWhRKRJw3qxToy3ksuTlHyo AZ8+AVyTfnGRAr3JGZd71COmD9727H8Fz9Z0vSFIsIOsWcPbLcSbQ2DzAGeFhWMu QZnHFomA+NtiUO1ATVkXSnugXsYi/ROAUx0ldeV/b9WiGDtYfZKA2z8cnIDGykTk UgYDSRMn8xKkZnbhlTwYQTCVJlWJpX2O+Mm6oQCzGHtfCvV1gf44/Cw2xdfR2yfW lQm30eEyDGA1EnSdtAUSy5AAFobBc8EQwrLi/ZnvrpUN7IQdn69n5C/X6f8xP6Qe 6Xj1Or/X0lj5A36rR1jTJ3TFpsavxsfZR99uTyjLQir3Ss5F0oGJtjbvtdhvY6tx 4C1aKMdtCB7KzDHpPmk9uBSLolqfc1Iden/J3iNaReOkEDSPMw7z81OvajGl3LKO AekcqJdQRul7q+VYTdwvzMQM/HHvvBZkT/YH8LuZ2vcCTcD3y0E2D3u8L8eWyrzS X/CSlVqVTMh+o8dvmbrnunbT5la7fQswP3ydGRat0iORMhpFYgkcDlE/L2AcfKl9 O+L0/0w+vd+HG9ublokgrP9rKnpOMtzLuUIHVQ0THaRLHJ7nynuCubXU51O5ajje 3oxpfP9f/dayEcqX2t1nzLKADi4lyTEhRcAN+C1lkEAZkpstJUI= =IjzM -----END PGP SIGNATURE-----