-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 10 Nov 2024 16:26:42 +0100 Source: mpg123 Binary: libmpg123-0 libmpg123-0-dbgsym libmpg123-dev libout123-0 libout123-0-dbgsym libsyn123-0 libsyn123-0-dbgsym mpg123 mpg123-dbgsym Architecture: armel Version: 1.31.2-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Salvatore Bonaccorso Description: libmpg123-0 - MPEG layer 1/2/3 audio decoder (shared library) libmpg123-dev - MPEG layer 1/2/3 audio decoder (development files) libout123-0 - MPEG layer 1/2/3 audio decoder (libout123 shared library) libsyn123-0 - MPEG layer 1/2/3 audio decoder (libsyn123 shared library) mpg123 - MPEG layer 1/2/3 audio player Closes: 1086443 Changes: mpg123 (1.31.2-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix buffer overflow (Frankenstein's Monster) (CVE-2024-10573) (Closes: #1086443) Checksums-Sha1: 849d63c44aa1a9b82a84eecd390aad235cabaeea 258668 libmpg123-0-dbgsym_1.31.2-1+deb12u1_armel.deb bc23b621feb53d0f19bd0b985eb3f21123fc5fbb 129316 libmpg123-0_1.31.2-1+deb12u1_armel.deb 98a1e80ee121c799d15ca9413cffed13b9421008 57592 libmpg123-dev_1.31.2-1+deb12u1_armel.deb cc280abebf9f6138f710298c62d17fd1ecffd531 73720 libout123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 5104482f3c11396191dca1135ac0dddc8ab48a07 25264 libout123-0_1.31.2-1+deb12u1_armel.deb cba1d60ab455e01bffd3dbfada23a1a84023a3c0 179420 libsyn123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 2d376010f16cc3ef457e960779720f53fbd82e9b 78912 libsyn123-0_1.31.2-1+deb12u1_armel.deb 82f12c01cd8e02de5de40c58763ec757cfa4a370 310548 mpg123-dbgsym_1.31.2-1+deb12u1_armel.deb 1e9ef0477763ef2062453b5913da2047b7df38f9 10397 mpg123_1.31.2-1+deb12u1_armel-buildd.buildinfo de2dde2bb0223c67456e73222e0a5e8503b6e1ee 195364 mpg123_1.31.2-1+deb12u1_armel.deb Checksums-Sha256: 34746830d4d60c5734a3affa7ee783bff220b8c561496ec502548a4b8e9e1344 258668 libmpg123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 61aba648170cf2b1456b0e6375f6167b0b1d591d36bb6af10eb90e9769d8e781 129316 libmpg123-0_1.31.2-1+deb12u1_armel.deb 4d92a19d525a2645da1e9f5ad130dadf504f458b8db4116af01dbc561d5cbd77 57592 libmpg123-dev_1.31.2-1+deb12u1_armel.deb 842bdb1e7cfe283df83bd5367ea8b4489e838473a74f2f2fcbb8cd84c2036ad4 73720 libout123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 4c8b5cfabfe8000bba3d7e331216e667c3d99f06d1cccdd2dc2da201f60a7368 25264 libout123-0_1.31.2-1+deb12u1_armel.deb 77825f0dc94ce9aae1ba813a41e81bfeeca9bb5f558290613fecc1dfd5ac3160 179420 libsyn123-0-dbgsym_1.31.2-1+deb12u1_armel.deb ef73a42b6cd59c7f1bf7e774d5cc05ec51f3fda5d6184ed3daab5dc80a746e6c 78912 libsyn123-0_1.31.2-1+deb12u1_armel.deb 517d879c577364181a92157e3eae2f74d418652f96a21b529c29f7053fc1b9ec 310548 mpg123-dbgsym_1.31.2-1+deb12u1_armel.deb 8d26a76651cfb70cd9758820c58204fd7feadf81462ef0f5af7d47ba1998f7a8 10397 mpg123_1.31.2-1+deb12u1_armel-buildd.buildinfo d5488052bfa6c849a1cfd350864dea5c3582352f792b73de2e2b5630f6fb0000 195364 mpg123_1.31.2-1+deb12u1_armel.deb Files: 27643abf5eccb544e51edf8889e74609 258668 debug optional libmpg123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 5b6a85a7fbcb5d9bead44d2ed7e8e037 129316 libs optional libmpg123-0_1.31.2-1+deb12u1_armel.deb cf4c4554a11ab1d6c2d4ba1809a30b3f 57592 libdevel optional libmpg123-dev_1.31.2-1+deb12u1_armel.deb 690bf7f2e0e566b64184055873ee72f0 73720 debug optional libout123-0-dbgsym_1.31.2-1+deb12u1_armel.deb 76ba71abab02a73067813eba6c5fcbde 25264 libs optional libout123-0_1.31.2-1+deb12u1_armel.deb e8993b15514db7dac0debe945f0dea9c 179420 debug optional libsyn123-0-dbgsym_1.31.2-1+deb12u1_armel.deb e4305217a76881a925bb29c48072c4b0 78912 libs optional libsyn123-0_1.31.2-1+deb12u1_armel.deb 5d661e13ee217f78a457c5a60bbe3cc4 310548 debug optional mpg123-dbgsym_1.31.2-1+deb12u1_armel.deb 7fd3a6135544731876ef38ecbe66ec9b 10397 sound optional mpg123_1.31.2-1+deb12u1_armel-buildd.buildinfo 25ee77fd0cd6248992eece65f672b979 195364 sound optional mpg123_1.31.2-1+deb12u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE6s8UzO+WAx8RRAOV80lOEvgzuSsFAmcw1kIACgkQ80lOEvgz uSvo3RAAnf7zye+sqOvx5ylphOK4smgRdsBgPeRwnNYBUlnuVs0AvXyy0ci5Nqkv DD753ura0mB6FydtXe+w+4BTzOEe/0Py0ekVBYe2v86JJ4IWT4WLy9BhEgVNRYdG aS8wZkBBAZET5cvnFK62hDWkmI1R/4gcQQZ1Pq/tQXc+G3cE6vcvewNeIyAgzyNU kgorlR5R03ufKV6Kv2MxujDOw+6vrAGZKesFLPNhy3YkvKmnN8E39UzWZSntvh9C OnuiZQSzu6PqFciBHsr57/vcXDkFL47+7TC48guMZKnC6Cz0obuaU+EiDtviSlOr 6UUbk4IP50f4rXlqcd15B8Fuzq0tCbKpA8pa2ZP3rdZ0T2FIhnjF84gZGzxCr6Iq zCJ6wao+RpdoLSjqIUP9a+CnRLsdJ2kGJUG2LWR3IR3Nks228G895quboe0ItYSC 4LvlYvSLrZqwu5bmPERS4ttF9mkxX3aGFkpBCD8C9/Cq9wZjNNlYVEZQyoFck0XV 2StQZAkNhm4yXoU+sAXQ4x2k+9yHvWR+E7kstnv1BXjLVsMvuwJRMa+ZWmqBjoiD 6LuHw36m12kTb1iWesgZBmlNWv+OinW+v8nifk+silO5R/EZ3pop6URI1P4Ue2/z Gfpwctm4fOQcDyeTXXGJFFIbTxtu/B0aL+tjZqZekt6vwqNEk9g= =eZWZ -----END PGP SIGNATURE-----