-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Feb 2025 21:59:03 +0100 Source: dcmtk Binary: dcmtk dcmtk-dbgsym libdcmtk-dev libdcmtk17 libdcmtk17-dbgsym Architecture: arm64 Version: 3.6.7-9~deb12u3 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-conova-03) Changed-By: Étienne Mollier Description: dcmtk - OFFIS DICOM toolkit command line utilities libdcmtk-dev - OFFIS DICOM toolkit development libraries and headers libdcmtk17 - OFFIS DICOM toolkit runtime libraries Closes: 1070207 1098373 1098374 Changes: dcmtk (3.6.7-9~deb12u3) bookworm; urgency=medium . * Team upload. * Introduce patch series to fix CVE-2024-28130. This change introduces the patches: * 0001-Fixed-unchecked-typecasts-of-DcmItem-search-results.patch * 0002-Fixed-unchecked-typecasts-and-fixed-LUT-handling.patch * 0003-Fixed-wrong-error-handling-previous-commit.patch mapping to upstream commits: * dc6a2446dc03c9db90f82ce17a597f2cd53776c5 * 601b227eecaab33a3a3a11dc256d84b1a62f63af * 7d54f8efec995e5601d089fa17b0625c2b41af23 with the nuance that upstream check functions are inlined, in order to avoid an ABI breakage. Thanks to Adrian Bunk (Closes: #1070207) * 0009-CVE-2025-25475.patch: new: fix CVE-2025-25475. (Closes: #1098373) * 0010-CVE-2025-25474.patch: new: fix CVE-2025-25474. (Closes: #1098374) * 0011-CVE-2025-25472.patch: new: fix CVE-2025-25472. Checksums-Sha1: 1765cb16c5267bc6f6b38837f61b36fb62fda72d 5064468 dcmtk-dbgsym_3.6.7-9~deb12u3_arm64.deb 025ec2cb1d949700ad7f4bf306afeeb99d0757f5 9076 dcmtk_3.6.7-9~deb12u3_arm64-buildd.buildinfo 22dd1bfd7d038717f4734c83496b03fa0c541326 785864 dcmtk_3.6.7-9~deb12u3_arm64.deb bc0a3e66a397802566e4619477af3273dbe3d5af 1013344 libdcmtk-dev_3.6.7-9~deb12u3_arm64.deb a1ef55ca7c6cbc48f04cbbdb235dd018fd6fc991 60952480 libdcmtk17-dbgsym_3.6.7-9~deb12u3_arm64.deb 6b4f055afd20c28f6cd55d6f3ef5b2f21d5cc414 4231464 libdcmtk17_3.6.7-9~deb12u3_arm64.deb Checksums-Sha256: c045a2e249b3567e4fb4d23ed5e4ec19b95b271acc56fed8751a763d746cbff8 5064468 dcmtk-dbgsym_3.6.7-9~deb12u3_arm64.deb 9f3e20969d2b2d7d720b06d59f5db934447a5046b93ce808507a47170967db5d 9076 dcmtk_3.6.7-9~deb12u3_arm64-buildd.buildinfo cfba7801751889a280cca5070f6c8989142f8d38dbdbc7bc9887ac16602ac16e 785864 dcmtk_3.6.7-9~deb12u3_arm64.deb 291f0e7204ac5ad687f735f2ab02be99a2e8bf635d81dbda17454034c3a6206e 1013344 libdcmtk-dev_3.6.7-9~deb12u3_arm64.deb 37e0732f278a6de8ebf581bb1e2b3fea9987ae92c1bf7e72622d0a61b278068d 60952480 libdcmtk17-dbgsym_3.6.7-9~deb12u3_arm64.deb a21243c7611c08a37181345741727376fb5ef8b19ffef4ec11509193e0526c3e 4231464 libdcmtk17_3.6.7-9~deb12u3_arm64.deb Files: 00b8510e491dde50a0237c745ec6dfd8 5064468 debug optional dcmtk-dbgsym_3.6.7-9~deb12u3_arm64.deb 030fef748e8a03bb1ae76bc7c4a1c531 9076 science optional dcmtk_3.6.7-9~deb12u3_arm64-buildd.buildinfo 64bc574bcd9ef8f882e2441d6fd42f2c 785864 science optional dcmtk_3.6.7-9~deb12u3_arm64.deb 2249922de4e0bacaf9d41290617b42ad 1013344 libdevel optional libdcmtk-dev_3.6.7-9~deb12u3_arm64.deb cde4ac9e7a85ec1a3e4157f02ca2a832 60952480 debug optional libdcmtk17-dbgsym_3.6.7-9~deb12u3_arm64.deb fa93e61a1a2461912f7873b920f4b087 4231464 libs optional libdcmtk17_3.6.7-9~deb12u3_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEVM4SKBZumztS8zr3lST9Us03ywsFAmfMrQMACgkQlST9Us03 ywv6eg/6AxyP4hAcyU0J/z1ctZRI60rbz9yg3HVU1Wckm0c+gKyG+DJfuLYPr9wP OgihjqKsu0Zx3LR3Z85nr8wtsv6uAbXWDSJugkgbxR4pDV4+e2JfSo2rWjDs0+PU AEK2DAsYXKJopQNkL11W8h2UewV4LrAiLHd/ZvcM/klX39RBDk30YaeUrycA4I3T stcKmcgKYoSmnOFLy6XE5O4N/LZX4aE9+qfJF0EQIf1mINpj1MITl8ihebxKoCWT dA2crcnB/zHCEWakVaxcn5P80dLgp70nIXGyjSRfG7oiuzI0QZt+AIe+Ca0P/NBg M+vtDWF+UfHalZFbrzMSfINhosEBGGkMwJBjrL5TSGxRRJddl+conHuZr1SCRQi6 GFF873VVCkEsZbIvbiS9oMdiMDtVojDxLpS6J+j/vv4ERYci5F+NDJ6ZUKIEfFXF m3ZXnzQYsEXkHSnfzzVog2zDe2tLoX9SPvADSCbThHQpC5lFi1g6MERzYXIRrp1/ BXbz1536wPudV33GpD2XYuOHJ5SjmyPSOQwQjaR220JQfBMe/o/t9CmUMIDt80lg PbWhqxebZ4Muvm3TbXF/gNcEVDDOohOLO/UyW+uyH/ayWd+FnIplCjMRX8Iubd+N emmEUmLwN5xhn24W9SjrPvmu8xSPm7v2hPJQr+G6XEu7k3hfxBE= =ZHHB -----END PGP SIGNATURE-----