-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 20 Nov 2025 10:45:05 +0100 Source: cups-filters Binary: cups-browsed cups-browsed-dbgsym cups-filters cups-filters-core-drivers cups-filters-core-drivers-dbgsym cups-filters-dbgsym libcupsfilters-dev libcupsfilters1 libcupsfilters1-dbgsym libfontembed-dev libfontembed1 libfontembed1-dbgsym Architecture: amd64 Version: 1.28.17-3+deb12u2 Distribution: bookworm Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Thorsten Alteholz Description: cups-browsed - OpenPrinting CUPS Filters - cups-browsed cups-filters - OpenPrinting CUPS Filters - Main Package cups-filters-core-drivers - OpenPrinting CUPS Filters - Driverless printing libcupsfilters-dev - OpenPrinting CUPS Filters - Development files for the library libcupsfilters1 - OpenPrinting CUPS Filters - Shared library libfontembed-dev - OpenPrinting CUPS Filters - Development files for font embed libr libfontembed1 - OpenPrinting CUPS Filters - Font Embed Shared library Closes: 1120698 1120704 Changes: cups-filters (1.28.17-3+deb12u2) bookworm; urgency=high . * CVE-2025-64503 fix an out of bounds write vulnerability when processing crafted PDF files containing a large 'Mediabox' value. (Closes: #1120698) . * CVE-2025-57812 fix an out of bounds read/write vulnerability in the processing of TIFF image files. (Closes: #1120704) . * CVE-2025-64524 fix infinite loop with crafted input raster file, that resuls into a heap buffer overflow Checksums-Sha1: 583cf0715b5b1b32c0f9e8e13b5abf108c8f7581 211656 cups-browsed-dbgsym_1.28.17-3+deb12u2_amd64.deb f82c7544916c49af70e9f9327a2339f83fe52438 139992 cups-browsed_1.28.17-3+deb12u2_amd64.deb 80a98ada5037da513d854c65094655c56ac58885 2067584 cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_amd64.deb d124b9d2e3e2bedeaccacfbaf216ea6213ae7629 204672 cups-filters-core-drivers_1.28.17-3+deb12u2_amd64.deb 9052a1ca5bb4b7f9d421db1a7710765806a3bf0d 786352 cups-filters-dbgsym_1.28.17-3+deb12u2_amd64.deb bb04d4a947e188a4320a73966896d994b1365712 14627 cups-filters_1.28.17-3+deb12u2_amd64-buildd.buildinfo 0d76bf572be7fdff34f75c072ea53e3781a4e096 568708 cups-filters_1.28.17-3+deb12u2_amd64.deb 770bc17f0103aaac97124b3c454e73569fea70b3 139528 libcupsfilters-dev_1.28.17-3+deb12u2_amd64.deb 6b527914ba695d3e3a2fe28e10fe7ec7c3e62c48 224336 libcupsfilters1-dbgsym_1.28.17-3+deb12u2_amd64.deb 7f66948c70ed6fa544ddfcd3955d294bccdea12a 125992 libcupsfilters1_1.28.17-3+deb12u2_amd64.deb b99b0a54931010038c5d5c22dfd628fb1b5b6cc5 56756 libfontembed-dev_1.28.17-3+deb12u2_amd64.deb a51006c05aa09767dbb637e470bebd44ca6d7fdb 58752 libfontembed1-dbgsym_1.28.17-3+deb12u2_amd64.deb cc84dc531778ffa439d3af403a79824bfa723590 52928 libfontembed1_1.28.17-3+deb12u2_amd64.deb Checksums-Sha256: afe26b0663657208df68a0d53c0217d33741c31e98d2ae2906a69d98bcde4966 211656 cups-browsed-dbgsym_1.28.17-3+deb12u2_amd64.deb 99f844b06df83e228984bce2c181340c7dfe1a8fbd13a63d67d26ed1dfc4ae57 139992 cups-browsed_1.28.17-3+deb12u2_amd64.deb 85406adb15cdd9155d666c57c3868dcbf80cef8eff6d209be4cc778e1e186433 2067584 cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_amd64.deb 1d943dd72b3a8a23dba5c5f76807211d7337feb8c3c5825a37fdaa47ded9fecf 204672 cups-filters-core-drivers_1.28.17-3+deb12u2_amd64.deb 53ad55198800b23bb2cababdd2a87f23797c66f5a3f8a1ba98835cba6d799fe2 786352 cups-filters-dbgsym_1.28.17-3+deb12u2_amd64.deb ef573e59cba42e0937b681df57e9dfcb7a02625344e63a75aab50640d89cdc34 14627 cups-filters_1.28.17-3+deb12u2_amd64-buildd.buildinfo 4201494d7a956e2775f53ef099cb5375f69afa0079e5210ebe7767b37f5da67e 568708 cups-filters_1.28.17-3+deb12u2_amd64.deb d9a77bc56ad6b515643b7510620ba6e8a0f13fc94f9202a29a0fc306d29cf53b 139528 libcupsfilters-dev_1.28.17-3+deb12u2_amd64.deb 92f0a9affae6d33f93121e128e8779717b4e0adceb9d36616826de3ef1c7e1f1 224336 libcupsfilters1-dbgsym_1.28.17-3+deb12u2_amd64.deb ee24e3e5df79012867955acb28c4e4a353a691758ba69f4d39973af6f41a7015 125992 libcupsfilters1_1.28.17-3+deb12u2_amd64.deb 30f23cfecbc8288129fa750cceffd20fd4dc5260a8e9e459c075c75d0d5c2e51 56756 libfontembed-dev_1.28.17-3+deb12u2_amd64.deb 603cb9c5fdeabada76bb03569a0dd4c42c07cc26f0f6604a006d7c95c6136881 58752 libfontembed1-dbgsym_1.28.17-3+deb12u2_amd64.deb a263d1b2cc39bfd042bde910d3962fcc5ef5471b4822c26645a0e45083d8948a 52928 libfontembed1_1.28.17-3+deb12u2_amd64.deb Files: 77d3a2b15eb9b3b500073e7eda9f400a 211656 debug optional cups-browsed-dbgsym_1.28.17-3+deb12u2_amd64.deb 1c4542e38c847717e49c7d1cc044aa45 139992 net optional cups-browsed_1.28.17-3+deb12u2_amd64.deb 7fc8095ed40f0c306b000a8cfbeb40cf 2067584 debug optional cups-filters-core-drivers-dbgsym_1.28.17-3+deb12u2_amd64.deb 2827c8d0dd87c4566bf1d2538dc116ee 204672 net optional cups-filters-core-drivers_1.28.17-3+deb12u2_amd64.deb 088b5b12c281573e2924bd873ba73580 786352 debug optional cups-filters-dbgsym_1.28.17-3+deb12u2_amd64.deb b7755dcfcd856c72134ddbb2ef2c5367 14627 net optional cups-filters_1.28.17-3+deb12u2_amd64-buildd.buildinfo 49b04edbf0ad66bea1a2ec8141a49af6 568708 net optional cups-filters_1.28.17-3+deb12u2_amd64.deb 9949f69891ab81c9ff11ec67bc8150bf 139528 libdevel optional libcupsfilters-dev_1.28.17-3+deb12u2_amd64.deb 7037e16e78579c0ea6a2dd161fd5c7b5 224336 debug optional libcupsfilters1-dbgsym_1.28.17-3+deb12u2_amd64.deb d74fded48ea226de412d591c5db5855b 125992 libs optional libcupsfilters1_1.28.17-3+deb12u2_amd64.deb 2ac12cf6ca5ae57a8e57eef876bc28fa 56756 libdevel optional libfontembed-dev_1.28.17-3+deb12u2_amd64.deb f1dd9796a24ab269fef6d55e0c600849 58752 debug optional libfontembed1-dbgsym_1.28.17-3+deb12u2_amd64.deb b4c3402c71b3f5a1242f05e904ccb8a0 52928 libs optional libfontembed1_1.28.17-3+deb12u2_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXNeYFUF3FbHcrtSeIy3Pg040HrAFAmlIXloACgkQIy3Pg040 HrAvnA/9HcBMAUwu7wVco7XTEN8CFX3Jgrwm7/IeM1rh7G35DbIoesjDJIkUFA1S hM353vw7s0MoOzCWpdStzaBFKcn33J5RzOjh+Z4cBjaI+RgOgap/YSSll1GYgeNt /ktbNr6p4dOZjUzbEx66UL81j0rsweaGt5yFl1wfroXe9kbQbJmeuvytRmFgWFz3 kE+S+oRNUOkr2rhIgo+kyMwrQHr6j0LHXsIJX4DW4r6lDIT5bxfUWcURwb7Hv56b x0CB7tJ3HprK0mt93aiVWtoTF7s8LIIGK3ePB6oV6A/eKKIe2ZDy+zZlP2GIzgsp 382PxWuCrCKoKuIv7t5+iDN60lImu/TVLBPtJs9ji6SUd7cpfDxsXzael/S3SUVZ QPpbPLFWKUaIWLwbSg/386iRDA4DOeTLgnlG9GEPprvRuYZxmXJv6HVYOjoF0tEJ +6YRcF3I6vxvdfC7s1UosYwkL9xvsWKBKhR647nO9iU/nRZVVs4Vu1R6OjIk6xF8 CMGhviHsI8rAJZcyxwY6YHPMjkdV4NwvjR38iykC+vaqFBn3g8WIQTSamGcXEt+/ Qg2EQwZpHrXVWdw36Pdpd4fC4t0KJpfcdnvcD+V9t+DWOis2rLQLYLz4RqWHiYk0 P+k32uYh3lkISFkY8d8FzvfdxLUodY5o48Ru18O4iA7bFD4q+3o= =vKdE -----END PGP SIGNATURE-----