-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Feb 2025 21:59:03 +0100 Source: dcmtk Binary: dcmtk dcmtk-dbgsym libdcmtk-dev libdcmtk17 libdcmtk17-dbgsym Architecture: armel Version: 3.6.7-9~deb12u3 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Étienne Mollier Description: dcmtk - OFFIS DICOM toolkit command line utilities libdcmtk-dev - OFFIS DICOM toolkit development libraries and headers libdcmtk17 - OFFIS DICOM toolkit runtime libraries Closes: 1070207 1098373 1098374 Changes: dcmtk (3.6.7-9~deb12u3) bookworm; urgency=medium . * Team upload. * Introduce patch series to fix CVE-2024-28130. This change introduces the patches: * 0001-Fixed-unchecked-typecasts-of-DcmItem-search-results.patch * 0002-Fixed-unchecked-typecasts-and-fixed-LUT-handling.patch * 0003-Fixed-wrong-error-handling-previous-commit.patch mapping to upstream commits: * dc6a2446dc03c9db90f82ce17a597f2cd53776c5 * 601b227eecaab33a3a3a11dc256d84b1a62f63af * 7d54f8efec995e5601d089fa17b0625c2b41af23 with the nuance that upstream check functions are inlined, in order to avoid an ABI breakage. Thanks to Adrian Bunk (Closes: #1070207) * 0009-CVE-2025-25475.patch: new: fix CVE-2025-25475. (Closes: #1098373) * 0010-CVE-2025-25474.patch: new: fix CVE-2025-25474. (Closes: #1098374) * 0011-CVE-2025-25472.patch: new: fix CVE-2025-25472. Checksums-Sha1: 83349e9208d636e969b07235ae8ebd1bd5877b7d 4764968 dcmtk-dbgsym_3.6.7-9~deb12u3_armel.deb d51108cbd7a611519d29d5c98f91b9680db14b58 8950 dcmtk_3.6.7-9~deb12u3_armel-buildd.buildinfo 62aea9e46c75a4e47b381e3b14f69884145b59a8 813372 dcmtk_3.6.7-9~deb12u3_armel.deb 1ab9903a136410ecfdb3f22a88bdb55af139c211 1013232 libdcmtk-dev_3.6.7-9~deb12u3_armel.deb 3d3b0b1904754342d620a9bc0c2d133023c0912b 62057144 libdcmtk17-dbgsym_3.6.7-9~deb12u3_armel.deb 8d43581df644ff33532eb4ad83d25eaf36911a4b 4128336 libdcmtk17_3.6.7-9~deb12u3_armel.deb Checksums-Sha256: 9df35fd892655ff9ebbca5fd7f647bf6e844ce289dc8c02cc3bce2642c3aa43d 4764968 dcmtk-dbgsym_3.6.7-9~deb12u3_armel.deb ce9c94b47cd5eee87d2a60759bb6925c3e2b1c64923a26f4c31b2df49be02ed7 8950 dcmtk_3.6.7-9~deb12u3_armel-buildd.buildinfo 0f7a3a15fa400f7e471c58085bfbfe466fb222e997affa373c405ece36583eef 813372 dcmtk_3.6.7-9~deb12u3_armel.deb 52fce01acab32435122b1abcf883bec47c3735f85ac7c3350bff94e1f0845c7e 1013232 libdcmtk-dev_3.6.7-9~deb12u3_armel.deb 13324e929f7f008e99050cf62551bf2bce9e9d480c327c2c6cd41bce6e186f9c 62057144 libdcmtk17-dbgsym_3.6.7-9~deb12u3_armel.deb 9df1a532802755108b3a54693c79a223cf5dd725e5d12fc51cab4da045ec2b7a 4128336 libdcmtk17_3.6.7-9~deb12u3_armel.deb Files: d90ea0f9c3b8007dc36ef2dc54b2c3fa 4764968 debug optional dcmtk-dbgsym_3.6.7-9~deb12u3_armel.deb 3df156716d1416bee880bee53cdd0444 8950 science optional dcmtk_3.6.7-9~deb12u3_armel-buildd.buildinfo e68a72d1014bdb0102d9225a1465b462 813372 science optional dcmtk_3.6.7-9~deb12u3_armel.deb f7a17b61e2d3231adf4c9df21b27ab85 1013232 libdevel optional libdcmtk-dev_3.6.7-9~deb12u3_armel.deb 04527585ac05e85ec2c49ae4dfd46192 62057144 debug optional libdcmtk17-dbgsym_3.6.7-9~deb12u3_armel.deb 8d72d93f276c32100e9db6cbff700403 4128336 libs optional libdcmtk17_3.6.7-9~deb12u3_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKAzExpjGvTI78ZO8LARVyvnD3xkFAmfMrRQACgkQLARVyvnD 3xlQHQ//baZHatLMH1bQ5Q0lE0xTOaenx4dziHCpMtqyUc2lmbd7lyhIzzghfy0r 3QIBvdxBV4rR++QhVfOFnUZL/dJajNe6gF0bMv33J9GV4aZPeJJa7ucOgL+hmv/S VCh4oB+5asshYrM9I5WcmYy7ItLj7N/H5zFjD2DXf2alkSzXL+UBDiRj6klDNPLH uiZqU5Ef8NADVjUoxL/yJpvGHZeSDJh4EtW4ftlRm97zSPeAVMEB1I+yRIgb0GAv 1/BxKWUlC7bRQmV22A9qlzApczcbgI8Uby9hw3i/q7CDGpc/5cZmEROYsFi8GwsX MlAQqtP9WfoapihySikkRg2dIPcTu3LGw/56dO/BAad5rzMPuu9Z5ktY8crgEVpX uMQ3l1En8wkSdgjyPBB+OAMjirmtg6kqz3KCTXaPgwFt7/DlrrGWLcZrxGR50e2l tiMW01bLYDqeiK3kHS451fjs1x4aW57/+XdyM55uxkWgsGZnxjdog6Nyt07T6A71 BkdRaX8SMsVS37w9PCQxZrE5AfvXRIKz/5mc6yQXIsHr03nm7EKqxhqsCUqTpue9 Fxb6yUOezVdZJgo3LYh4Ph/yF6dMEKmk56Ux1DgpbHsWIx+tSdsm0vd2urvpq0XI Bcuv/v/h5EFxblM2EygLfk810sN9s9S+RJA625fmCTuTWeRTWnc= =Ff1U -----END PGP SIGNATURE-----