-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 10 Nov 2024 16:26:42 +0100 Source: mpg123 Binary: libmpg123-0 libmpg123-0-dbgsym libmpg123-dev libout123-0 libout123-0-dbgsym libsyn123-0 libsyn123-0-dbgsym mpg123 mpg123-dbgsym Architecture: ppc64el Version: 1.31.2-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-01) Changed-By: Salvatore Bonaccorso Description: libmpg123-0 - MPEG layer 1/2/3 audio decoder (shared library) libmpg123-dev - MPEG layer 1/2/3 audio decoder (development files) libout123-0 - MPEG layer 1/2/3 audio decoder (libout123 shared library) libsyn123-0 - MPEG layer 1/2/3 audio decoder (libsyn123 shared library) mpg123 - MPEG layer 1/2/3 audio player Closes: 1086443 Changes: mpg123 (1.31.2-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix buffer overflow (Frankenstein's Monster) (CVE-2024-10573) (Closes: #1086443) Checksums-Sha1: a527d4aad5613178696addf0eab144a7c61ca485 251080 libmpg123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 8b95866a0b15479e01ead3238036c148c07b6a4c 159460 libmpg123-0_1.31.2-1+deb12u1_ppc64el.deb b1da7790cc64dd79eb479459b9e075fcd7fc213f 57560 libmpg123-dev_1.31.2-1+deb12u1_ppc64el.deb 149f4fc2bd3dfbca1f7ec14ef3c2f3bd7ecc2e64 73844 libout123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 419499d92d7f3ae83c411e6e5d7825a9871aa613 33060 libout123-0_1.31.2-1+deb12u1_ppc64el.deb deb642859ef859754353671e89ddf0cd3c72657b 169080 libsyn123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 0263f190c40c6df20622272419a741dd5d77c9f9 96332 libsyn123-0_1.31.2-1+deb12u1_ppc64el.deb 01c457247bf538e9f671c434ecfb419dfbf77977 316660 mpg123-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 15d54ab33275aea0c7d2e0aa64f9385eef55ab0a 10578 mpg123_1.31.2-1+deb12u1_ppc64el-buildd.buildinfo bd7824157dc80be31dd81864c1fa0cb727e66d65 219528 mpg123_1.31.2-1+deb12u1_ppc64el.deb Checksums-Sha256: 46d0f394d3394ac38c3fd1844020df5f1a5b137639d484154677d5a9dbebf4b3 251080 libmpg123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb fcd2eb103e004c981c6702c79c5f78dd752c78da61d530e6ea7fd338fb22e77b 159460 libmpg123-0_1.31.2-1+deb12u1_ppc64el.deb 3f7371767ea0af97b93d96202c9b25452a95b14d48c060447cb92cb1bfc1a6fc 57560 libmpg123-dev_1.31.2-1+deb12u1_ppc64el.deb c73baf70d7ed7ee864d7377418bccf135703e884bc2b08070f4216f0f7305fc1 73844 libout123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 0d90bce6122502227291a0e35981ba2d9a51fc4e9f64850d95dfa32b0090dc00 33060 libout123-0_1.31.2-1+deb12u1_ppc64el.deb 8b7eae74cf903ab65e77eaad08d6d82bb30820ab1df6a5a566e0f173892bcd55 169080 libsyn123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 553b7c420c67717ea0c2943a0d21426e6cd3dcca2f3657044ae6d4395eb2f3a2 96332 libsyn123-0_1.31.2-1+deb12u1_ppc64el.deb 787e8fa86f0cab6062023f312936a31abf3dbfad5d15be53ca1a8ae87cb2312f 316660 mpg123-dbgsym_1.31.2-1+deb12u1_ppc64el.deb e5496ad8bb9fbb54189ea9cb3af093362c9d89738647f5989285f1590db830ab 10578 mpg123_1.31.2-1+deb12u1_ppc64el-buildd.buildinfo b1466556557aa6cfdba48f98db2fcba4622ea105a974767e1a1cf4414fab586b 219528 mpg123_1.31.2-1+deb12u1_ppc64el.deb Files: ff5306fe66289d2e6f51d1c9ddda1011 251080 debug optional libmpg123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb d260d2f4d496f19da323446d009be562 159460 libs optional libmpg123-0_1.31.2-1+deb12u1_ppc64el.deb 80a164197b0138bc67dd5245c5d703da 57560 libdevel optional libmpg123-dev_1.31.2-1+deb12u1_ppc64el.deb dcf25271d1aff573ebe6930abbab88ce 73844 debug optional libout123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb d83496e52611fa2a7ed55562ec38ec3a 33060 libs optional libout123-0_1.31.2-1+deb12u1_ppc64el.deb 1cbd7a826081db0febdecf097c720b64 169080 debug optional libsyn123-0-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 634fb65dac66a12cb721a12402b4ca6a 96332 libs optional libsyn123-0_1.31.2-1+deb12u1_ppc64el.deb cb7801e8dac7cddd63a936fcfa5fd237 316660 debug optional mpg123-dbgsym_1.31.2-1+deb12u1_ppc64el.deb 4ab103607c8deaaf349d5bedaf0a7910 10578 sound optional mpg123_1.31.2-1+deb12u1_ppc64el-buildd.buildinfo e67fbf9112eab28615f61f12362ca20e 219528 sound optional mpg123_1.31.2-1+deb12u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE5v3ycPFoB5xoBEprvMjydu+xvRMFAmcw1cAACgkQvMjydu+x vRP3qQ/+IpVXjOlBAvr+fzm+PBZHCo5dZya90jT4utSntIuj6wtEBwMfCPNIPVAk NqIPdSdiI+y6+HZEJ/XNLl6K8t9B4exwepHyZ0vXHYBUjvtYNYCPPvMfFHRHarfi Ra93bO+qJvXgxl4dqOArJJWIZ34QhjWydTpYtneBYju5X/QnAyQO/fRSep1DNUcr gLOWfQO2NxkZe+tp5LIWnI8y7jx4nkls33v0/uh8byB1nz2BO5mMurJAD9owSDfu 6AtTibpBHrc8CWt2RhUEoFk/wgLXe6nWvUI6xU84WAHlOhxeB2bFjjGQi8m9hRg5 xG5aMEcO4+cSrDMFiU6FYtIpj2JiXga41uPd+vGmME57g57EQ0mMS3Xn4xTSI+Vm tZS5eLwyKUA280SguQF1VUS8gZnfhw5LRDGYYQPmoX2biLcn2oHZfq6BYHC2hVFr lOQhdhI2xN1EMRjIohIn1FHb57+7rSWe1i/Cyg1oZbk34rwYIy6RMGIS7TfOoPfh LbQM/ogTgI+cz/tF/nHH1WLEZ0iXj7J6fHIqXCqRFECuVCtszPE2PGY+YLjMcfHx LLA9xPpXV1JblNLsQ2MCQuuEJv2KjaHYTS2jGDWDECtCAiGbGnRFjjv8w7oCpZ6r WRFnuBBUreHvnoCFSlUYsfzoEhhzTzoagQ+0FkOoMIr93wmfFas= =Ifex -----END PGP SIGNATURE-----