-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Nov 2025 10:45:05 +0100 Source: cups-filters Binary: cups-browsed cups-browsed-dbgsym cups-filters cups-filters-core-drivers cups-filters-core-drivers-dbgsym cups-filters-dbgsym libcupsfilters-dev libcupsfilters1t64 libcupsfilters1t64-dbgsym libfontembed-dev libfontembed1t64 libfontembed1t64-dbgsym Architecture: amd64 Version: 1.28.17-6+deb13u1 Distribution: trixie Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Thorsten Alteholz Description: cups-browsed - OpenPrinting CUPS Filters - cups-browsed cups-filters - OpenPrinting CUPS Filters - Main Package cups-filters-core-drivers - OpenPrinting CUPS Filters - Driverless printing libcupsfilters-dev - OpenPrinting CUPS Filters - Development files for the library libcupsfilters1t64 - OpenPrinting CUPS Filters - Shared library libfontembed-dev - OpenPrinting CUPS Filters - Development files for font embed libr libfontembed1t64 - OpenPrinting CUPS Filters - Font Embed Shared library Closes: 1120698 1120704 Changes: cups-filters (1.28.17-6+deb13u1) trixie; urgency=medium . * CVE-2025-64503 fix an out of bounds write vulnerability when processing crafted PDF files containing a large 'Mediabox' value. (Closes: #1120698) . * CVE-2025-57812 fix an out of bounds read/write vulnerability in the processing of TIFF image files. (Closes: #1120704) . * CVE-2025-64524 fix infinite loop with crafted input raster file, that resuls into a heap buffer overflow Checksums-Sha1: 1db044c9e43c5b7971571326f2edc091102d6d83 215120 cups-browsed-dbgsym_1.28.17-6+deb13u1_amd64.deb 9ac5e2c2cbb258df0a987f3eb1f676768d0925e6 141164 cups-browsed_1.28.17-6+deb13u1_amd64.deb 6d59e543515cd32433ff017fb148cdc5acdf7ff6 1800840 cups-filters-core-drivers-dbgsym_1.28.17-6+deb13u1_amd64.deb 8b0cfd280c638faeb657e7e09c5343f6ef5ba9a4 209980 cups-filters-core-drivers_1.28.17-6+deb13u1_amd64.deb d52d918134e3a4e09e769bbb2bc1c6ed26181121 691720 cups-filters-dbgsym_1.28.17-6+deb13u1_amd64.deb de64e64a8fc93e3b627062931eaa2ecd44510eda 15451 cups-filters_1.28.17-6+deb13u1_amd64-buildd.buildinfo d1c80aad99fd21c1dddb929e113e3f0bba953547 571340 cups-filters_1.28.17-6+deb13u1_amd64.deb e88dbab9c741e6cbca5a1a36eb8f8837242bd181 139748 libcupsfilters-dev_1.28.17-6+deb13u1_amd64.deb fbaac6fecdfbdff14012a9abd2e42acf3950621f 228076 libcupsfilters1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb 12a42b7272f916980f1544c801f5a46796518ac8 126528 libcupsfilters1t64_1.28.17-6+deb13u1_amd64.deb 3bb43af001a58bf1ee2466c8e7ca1abeec20e784 58204 libfontembed-dev_1.28.17-6+deb13u1_amd64.deb 4f5184f153ef371a5059ea60dfa6e32f1105fb76 59084 libfontembed1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb 63662aceed011b035fef306169c50d88f3c1e1e5 53980 libfontembed1t64_1.28.17-6+deb13u1_amd64.deb Checksums-Sha256: a3d7b50e284ce5224b1b1332877fcd212bfe0a1d0b4d523a9b706ffea201bdb4 215120 cups-browsed-dbgsym_1.28.17-6+deb13u1_amd64.deb 18fe6fe43c8227e497b76535e520a33a5ae176d40458f55ba7645b2c22d6673b 141164 cups-browsed_1.28.17-6+deb13u1_amd64.deb 05d3a6bfd2daf93915cd1c2a12ed3d6fd23fb6892492ec3f403b50641bd5ba3f 1800840 cups-filters-core-drivers-dbgsym_1.28.17-6+deb13u1_amd64.deb 99c28c3d80638d07adc9970a6e5fc1ee7bc020a8317f9438549ab4f4348e9efb 209980 cups-filters-core-drivers_1.28.17-6+deb13u1_amd64.deb 2af065364b85b345c734a2c824371074bc7a68d2e21866df08938f1ba091e120 691720 cups-filters-dbgsym_1.28.17-6+deb13u1_amd64.deb 7b01fa09a826ff9b23a41415b04ae2f4e75eb1f34cc27401792dcbc07539dd8a 15451 cups-filters_1.28.17-6+deb13u1_amd64-buildd.buildinfo 2815ecbf7f6de89e3a80a9a5652dd402a3ae61130c8654c78d68a8bc64d7a531 571340 cups-filters_1.28.17-6+deb13u1_amd64.deb 334e3d6c215ef441eb441b50caa2f263bcdecb29922f95d2a7d3739d2e60d459 139748 libcupsfilters-dev_1.28.17-6+deb13u1_amd64.deb b2d135912093b4d745f2a98e7f1d32d3628e1f2556853675405819b6151f8029 228076 libcupsfilters1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb 459a86eb88be92fe0afd8c2eb392335b426c65bcf0432a01a813cc0508e25024 126528 libcupsfilters1t64_1.28.17-6+deb13u1_amd64.deb f6b37eedd988f58e87b5d4aeb46c4e4de6d749b23e12e13e2506680f5e8ca665 58204 libfontembed-dev_1.28.17-6+deb13u1_amd64.deb de00bd277f5203343e310306207c0da6dc35bc1eda28263c4ed9f08568f78e45 59084 libfontembed1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb 01ab559860081c9e53fc34efa8d3d42e3b5276d62f4fb2e50c3fd4c76e480d29 53980 libfontembed1t64_1.28.17-6+deb13u1_amd64.deb Files: 3158c1c6bc5399b2a7fdf8673adbed38 215120 debug optional cups-browsed-dbgsym_1.28.17-6+deb13u1_amd64.deb 59a271b263594204b3196300829dddd7 141164 net optional cups-browsed_1.28.17-6+deb13u1_amd64.deb f3f78239973ca2173aba57c6764923e2 1800840 debug optional cups-filters-core-drivers-dbgsym_1.28.17-6+deb13u1_amd64.deb 4a6525bc52e7183481ce10617e8f49f1 209980 net optional cups-filters-core-drivers_1.28.17-6+deb13u1_amd64.deb de5e7e0712ef2a71ca3547024bd4b123 691720 debug optional cups-filters-dbgsym_1.28.17-6+deb13u1_amd64.deb a1b37182a5f74ae6f4fe7b288654d630 15451 net optional cups-filters_1.28.17-6+deb13u1_amd64-buildd.buildinfo fc359e420d3596320f5b46c6db8eea24 571340 net optional cups-filters_1.28.17-6+deb13u1_amd64.deb 1d7732d6c2ca570ebcf67a1d7b0aacd3 139748 libdevel optional libcupsfilters-dev_1.28.17-6+deb13u1_amd64.deb a2b64b60ddaf9bc503f47521b4f1cdf4 228076 debug optional libcupsfilters1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb 4b0d29840a0e6b68fd50c744c5f3680c 126528 libs optional libcupsfilters1t64_1.28.17-6+deb13u1_amd64.deb 50ee0870e25cb411088c573f41d43c8d 58204 libdevel optional libfontembed-dev_1.28.17-6+deb13u1_amd64.deb cbc4db76b3fd196d96b6765e0782ea30 59084 debug optional libfontembed1t64-dbgsym_1.28.17-6+deb13u1_amd64.deb c39ca8d0048e3172b06eee115b9c44bf 53980 libs optional libfontembed1t64_1.28.17-6+deb13u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEaPzFtKPtF0JrKPV5iZlfn74WV6kFAmlGpTIACgkQiZlfn74W V6kJfg/+Nz+4oNpaOqIEkda64uM9eAtqqaoWvA6fnaZpjHbQgzCly9FvR+HKMP1U 9q0G9rsaOAeGN9qnsVxEQNwKRRiKKznpQblYhKL6M+Wj8pYC/SkDvKX3r54940eN 4x3nRY77TxG8kZYIo8hRpvntjOx60Mp2yuYjiQhv1Y60XrCyX9zR1AMDqIH8kaea fK2hs+zuOi+oEBDuVVtQlo4ocfwuamr0CEyAoTRZcvspet3EQMnYTTTQc3AV4lKW hiJ5YpsSBqoQngHauhx0JrCE7RlAVJNP8uxt7GqJW4stANfeNibZ1uIPDEWUb5Xh 1GZv14YokZ4sOYFcUz8uXXxqZByJiYPAr0pkwmhV7IhZy4t1BMCE574qSLnSHX35 j39nIWJxFeyGFwEs8now2Xd+GPbVgVqhu4biyV8dqYdZrZ5GfnCzLTTkszbGralh SbqUTlXoI04qr8QywY97efWI1BVuz1ib+QIRL29+wiGho1tEtzAHiFnwrn/9fUSP vTS9K54qGTcY3r5Zu/GYqRyCegAnDb+D7wCKZMaKX6srV3+yhHbROPsD9eJ77Q9w U/TyVxhoVmho1AMzWYnXzL7t63Bc/hEiVpv4PRGfFlTGFG57h0I9/WS6bgCHOzFe ckFAEOq8uuzyJnIvjKdVmC9DjVhCUQ4605bGpLFwKqp2IL4XxLM= =uFjS -----END PGP SIGNATURE-----