[ubuntu/impish-proposed] libgd2 2.3.0-2ubuntu1 (Accepted)

Leonidas Da Silva Barbosa leo.barbosa at canonical.com
Thu Sep 9 12:55:13 UTC 2021


libgd2 (2.3.0-2ubuntu1) impish; urgency=medium

  * SECURITY UPDATE: Out-of-bounds read
    - debian/patches/CVE-2021-38115.patch: fix a read out-of-bounds in
      reading tga header file in src/gd_tga.c.
    - CVE-2021-38115
  * SECURITY UPDATE: Double free
    - debian/patches/CVE-2021-40145-*.patch: fix a memory leak in
      src/gd_gd2.c.
    - CVE-2021-40145

Date: Thu, 09 Sep 2021 09:29:48 -0300
Changed-By: Leonidas Da Silva Barbosa <leo.barbosa at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/libgd2/2.3.0-2ubuntu1
-------------- next part --------------
Format: 1.8
Date: Thu, 09 Sep 2021 09:29:48 -0300
Source: libgd2
Built-For-Profiles: noudeb
Architecture: source
Version: 2.3.0-2ubuntu1
Distribution: impish
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas Da Silva Barbosa <leo.barbosa at canonical.com>
Changes:
 libgd2 (2.3.0-2ubuntu1) impish; urgency=medium
 .
   * SECURITY UPDATE: Out-of-bounds read
     - debian/patches/CVE-2021-38115.patch: fix a read out-of-bounds in
       reading tga header file in src/gd_tga.c.
     - CVE-2021-38115
   * SECURITY UPDATE: Double free
     - debian/patches/CVE-2021-40145-*.patch: fix a memory leak in
       src/gd_gd2.c.
     - CVE-2021-40145
Checksums-Sha1:
 bcd95e3d53df3ceed2426ba828e2e8020dcd65d9 2318 libgd2_2.3.0-2ubuntu1.dsc
 6e23a7ea452693ab08ab5d78cb6ea585f2054021 34500 libgd2_2.3.0-2ubuntu1.debian.tar.xz
 9db9ccf6c1262a8d634e31905bebc81a8f8ca4a2 8151 libgd2_2.3.0-2ubuntu1_source.buildinfo
Checksums-Sha256:
 6f22be95c193230b3f1c40dbabaea24efe30f27c4f4f0ab2c04e5881d491fdb2 2318 libgd2_2.3.0-2ubuntu1.dsc
 dcc6c1ae4e11d689f52a30149584a4b4d4a60c9be1f508726bf9b6d438d636b7 34500 libgd2_2.3.0-2ubuntu1.debian.tar.xz
 6df7bce2b67dab8974622394b6f313f941bd85eaab34af4c981b4af8a8dba0f2 8151 libgd2_2.3.0-2ubuntu1_source.buildinfo
Files:
 1dadac4f9e1c437cb41687ece0545b70 2318 graphics optional libgd2_2.3.0-2ubuntu1.dsc
 60af602ea4f1326697231fdb97d37c51 34500 graphics optional libgd2_2.3.0-2ubuntu1.debian.tar.xz
 d798cef54370c50557f7162fb6176362 8151 graphics optional libgd2_2.3.0-2ubuntu1_source.buildinfo
Original-Maintainer: GD Team <team+gd at tracker.debian.org>


More information about the impish-changes mailing list