-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 10 Nov 2024 16:26:42 +0100 Source: mpg123 Binary: libmpg123-0 libmpg123-0-dbgsym libmpg123-dev libout123-0 libout123-0-dbgsym libsyn123-0 libsyn123-0-dbgsym mpg123 mpg123-dbgsym Architecture: s390x Version: 1.31.2-1+deb12u1 Distribution: bookworm-security Urgency: high Maintainer: s390x Build Daemon (zandonai) Changed-By: Salvatore Bonaccorso Description: libmpg123-0 - MPEG layer 1/2/3 audio decoder (shared library) libmpg123-dev - MPEG layer 1/2/3 audio decoder (development files) libout123-0 - MPEG layer 1/2/3 audio decoder (libout123 shared library) libsyn123-0 - MPEG layer 1/2/3 audio decoder (libsyn123 shared library) mpg123 - MPEG layer 1/2/3 audio player Closes: 1086443 Changes: mpg123 (1.31.2-1+deb12u1) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix buffer overflow (Frankenstein's Monster) (CVE-2024-10573) (Closes: #1086443) Checksums-Sha1: 490e123db6f44cdfd35d6f7b3575bd50665557bd 296192 libmpg123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb a004ca8067857286a846e2e945d0f1f19c43f022 144316 libmpg123-0_1.31.2-1+deb12u1_s390x.deb b17a7c06197e03d7ddeace11cbb5311627e115d5 57592 libmpg123-dev_1.31.2-1+deb12u1_s390x.deb 24df356db5cf8a7964ea78b6ffa0a6b0edc2bdf7 72760 libout123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb 04fdb04808a6db7466120129d6496faafd752f48 25620 libout123-0_1.31.2-1+deb12u1_s390x.deb ac537156abb46c5bfa6adbc9faabe620b8e7ea19 158100 libsyn123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb a66b50e372649f7ca679f87b2605bb0f3f78c24a 72224 libsyn123-0_1.31.2-1+deb12u1_s390x.deb 22ceedfc94403762a8c3afd20a4f5f2e9902ebc0 303632 mpg123-dbgsym_1.31.2-1+deb12u1_s390x.deb 6aa031468a9e092b2c6d8d13db33bde1565d9edb 10419 mpg123_1.31.2-1+deb12u1_s390x-buildd.buildinfo d524531ad0b2ab88c1ac265e4b98aa5c28dc17e4 195792 mpg123_1.31.2-1+deb12u1_s390x.deb Checksums-Sha256: f4604ad6a29111544f58254ae10d7c5061dd4b7a6d3f324bf3d2937ed853acb7 296192 libmpg123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb 0ffbfdd617dba1f1b26e1f9109bf1de7ebc3d7b5793a62a2650426e29502b4c9 144316 libmpg123-0_1.31.2-1+deb12u1_s390x.deb a1d5e8ebd43bb27a7fa372d1828552ebd14d35fdbcc45744cea79812d10b07a4 57592 libmpg123-dev_1.31.2-1+deb12u1_s390x.deb 6fc7e32b6d3a699ef18a52e06135ecbb5458701748c86a1cca468919903eeb18 72760 libout123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb b09dccdf0be1d420b4ad8db971acbd3f8475688b3b7b04459a34dda019441920 25620 libout123-0_1.31.2-1+deb12u1_s390x.deb 27789199c65b8ae0924dbfab2d3d16a1e22053dcd74d69b1d6cbb70211507b0a 158100 libsyn123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb 41d932dfc6998e026477a1b45acfed567fe6f05f4e49f91f6c5b13cec35d965e 72224 libsyn123-0_1.31.2-1+deb12u1_s390x.deb 31a5a121601b6c63140ccbef48d6bf2ad13ef21601d9edf6b5ef5913373dc388 303632 mpg123-dbgsym_1.31.2-1+deb12u1_s390x.deb dd1bf93b0679d6ff966527ef588f243d655b53ab33f6c72bffe941b82cee8f85 10419 mpg123_1.31.2-1+deb12u1_s390x-buildd.buildinfo 285c05af9301e3bfc1c64fc01b1fd1dd5b5da759e8bf690a425b929c4b96e929 195792 mpg123_1.31.2-1+deb12u1_s390x.deb Files: 0ff380cdcab2573db8c4b804560874b1 296192 debug optional libmpg123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb db0d53b104698c317e42b26443f443d3 144316 libs optional libmpg123-0_1.31.2-1+deb12u1_s390x.deb 1c3dabc1f9ef0426927f8a7c032afe3b 57592 libdevel optional libmpg123-dev_1.31.2-1+deb12u1_s390x.deb e7359736d5ac6d968015cbd3085d3eb1 72760 debug optional libout123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb 1f1a60de3837e4d3fb67ecf2942f4c1b 25620 libs optional libout123-0_1.31.2-1+deb12u1_s390x.deb f24297254775e71a2f39d4bae272fc22 158100 debug optional libsyn123-0-dbgsym_1.31.2-1+deb12u1_s390x.deb deb3cac1aced4650c2dd1b907e835d05 72224 libs optional libsyn123-0_1.31.2-1+deb12u1_s390x.deb f7ad386567dfe72f51c1bc3992526e29 303632 debug optional mpg123-dbgsym_1.31.2-1+deb12u1_s390x.deb d971783c77d73d0ed98ac612b8bb03ac 10419 sound optional mpg123_1.31.2-1+deb12u1_s390x-buildd.buildinfo 1c8fbbb1598d212595e7c6e017122caa 195792 sound optional mpg123_1.31.2-1+deb12u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEu0D/YpnnSxv8epH9AKOyQzsWVasFAmcw1acACgkQAKOyQzsW Vas6jxAAsVcrxJDGgD57ClrdnbWhXSw7mS+voybIMh6dMadiPpinVR9f6pJQZ8H2 XogOJVHhLW9rsCoHIcK5cet1tc9PJ9kINZKFYQvb2XqLYixCekSO8TA1kSNqKL2k kTUNWf0ddtnlgyu+YHIz5aO1g5NRKLQO/rMSREDk1sjg0fIsaq0CLmIdVo5BsHpD P5B2MQUI6vYUsmPWahiKEIOO8wTYHheZkSi961yCpaduGi6aCRiu2TRfKd3/x88W t5M85q+w9TqPO0zOtwtotDJwO5eKHolEjRE4+GB4oKhkphps13+/BXHLX7OXcSgT vTN5LJ3UEpsdzuaiPGdJ3G++Ie5n52phWYdxgYiepPRsZVAAHQ751DXc0otelO01 cwxKW9lPb8dtwM+kxnhRDK4hsDROeNLbIn6Ev55XQ+NBR5um5POumkrfiqhovvhl righKHDii0QFlWTlklACgVV9CyVgc8G6FWyytHcEDETQXBX17Riei221yDOC0AI6 vtD0gFaUD8P67UfVtzOVqlSKg59dJISu8h9WGu6TiA8/Beo1Nf0JRY1bjsKLmZ7O pXRp3ywmIsnVv+Qx4b1GwhBFGRmPjEykMqIVff2AdFgtnYpu3AxL2ANDc+L1XYvs hlK7UqAz5pv2QQKiCZWxSA/1Dq+u0i5+tuFKIgVLz/R+1ebCKjg= =SKdl -----END PGP SIGNATURE-----