[ubuntu/mantic-proposed] qpdf 11.5.0-1ubuntu1 (Accepted)

Jay Berkenbilt qjb at debian.org
Wed Oct 25 10:35:39 UTC 2023


qpdf (11.5.0-1ubuntu1) mantic; urgency=medium

  * Fix data loss bug introduced in 11.0.0 and fixed in 11.6.3. The bug
    causes the qpdf tokenizer to discard the character after a one-digit
    or two-digit quoted octal string. Most writers don't create these, and
    they are rare outside of content streams. By default, qpdf doesn't
    parse content streams. The most common place for this to occur would
    be in a document's /ID string, but in the worst case, this bug could
    cause silent damage to some strings in a PDF file's metadata, such as
    bookmark names or form field values. (LP: #2039804)

Date: Thu, 19 Oct 2023 07:20:25 -0400
Changed-By: Jay Berkenbilt <qjb at debian.org>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Paride Legovini <paride.legovini at canonical.com>
https://launchpad.net/ubuntu/+source/qpdf/11.5.0-1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Thu, 19 Oct 2023 07:20:25 -0400
Source: qpdf
Built-For-Profiles: noudeb
Architecture: source
Version: 11.5.0-1ubuntu1
Distribution: mantic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jay Berkenbilt <qjb at debian.org>
Launchpad-Bugs-Fixed: 2039804
Changes:
 qpdf (11.5.0-1ubuntu1) mantic; urgency=medium
 .
   * Fix data loss bug introduced in 11.0.0 and fixed in 11.6.3. The bug
     causes the qpdf tokenizer to discard the character after a one-digit
     or two-digit quoted octal string. Most writers don't create these, and
     they are rare outside of content streams. By default, qpdf doesn't
     parse content streams. The most common place for this to occur would
     be in a document's /ID string, but in the worst case, this bug could
     cause silent damage to some strings in a PDF file's metadata, such as
     bookmark names or form field values. (LP: #2039804)
Checksums-Sha1:
 97754d8bad4623f51c74413d35a59332ab08bbaf 1925 qpdf_11.5.0-1ubuntu1.dsc
 2a082390b1bce80d6d5197b3e3837f4e2c3d6a33 14968 qpdf_11.5.0-1ubuntu1.debian.tar.xz
 bb3427b509ab7183532246278ba53135afce863b 9004 qpdf_11.5.0-1ubuntu1_source.buildinfo
Checksums-Sha256:
 ca776633d88fbd7b68cc43f7613e1067a2fd5d6f6f45a10f82a9f19fa9dbb400 1925 qpdf_11.5.0-1ubuntu1.dsc
 c6d9c9a0dd8fc4feef1b92e3703dd7e1db277228852e6d4bbd15a44431adc153 14968 qpdf_11.5.0-1ubuntu1.debian.tar.xz
 e7bc8033398c96f3cdf85a9ab315fa0e118cbc88565b85718df1c5a4bdc42a9a 9004 qpdf_11.5.0-1ubuntu1_source.buildinfo
Files:
 6f27797c478c5dafe2af9cd9c84473dd 1925 libs optional qpdf_11.5.0-1ubuntu1.dsc
 c38eac5d34dbdcba8c91f60f6d1b882a 14968 libs optional qpdf_11.5.0-1ubuntu1.debian.tar.xz
 5165437300ff22f1605f645c5f9795bf 9004 libs optional qpdf_11.5.0-1ubuntu1_source.buildinfo
Original-Maintainer: Jay Berkenbilt <qjb at debian.org>


More information about the mantic-changes mailing list