-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 23 Jun 2024 18:25:00 +0200 Source: indent Binary: indent indent-dbgsym Architecture: armhf Version: 2.2.12-1+deb11u1 Distribution: bullseye Urgency: low Maintainer: arm Build Daemon (arm-arm-01) Changed-By: Santiago Vila Description: indent - C language source code formatting program Closes: 1036851 1049366 1061543 Changes: indent (2.2.12-1+deb11u1) bullseye; urgency=low . * Restore the ROUND_UP macro and adjust the initial buffer size. Patch from the author, backported from 2.2.13. Fix memory handling problem. Closes: #1036851. * Apply two patches by Petr Písař . - Fix an out-of-buffer read in search_brace()/lexi() on an condition without parentheses followed with an overlong comment. - Fix a heap buffer overwrite in search_brace(). Closes: #1049366. This one is CVE-2023-40305. * Fix a heap buffer underread in set_buf_break(). Closes: #1061543. Patch by Petr Písař . This is CVE-2024-0911. Checksums-Sha1: 1665f28c0fb5988752e4b5adf38fa59635131eef 81144 indent-dbgsym_2.2.12-1+deb11u1_armhf.deb b2f3147b97e13d96448fb02fc56047fb7f27e35f 6271 indent_2.2.12-1+deb11u1_armhf-buildd.buildinfo 7d22c9df200bb7b0925b4483fad901796dc84b09 123520 indent_2.2.12-1+deb11u1_armhf.deb Checksums-Sha256: d2738de795211cb24f4bb92385cf09c4b938babd67afb5a378ae3d9a85a0a13e 81144 indent-dbgsym_2.2.12-1+deb11u1_armhf.deb d914e1c8b2aff6a555ab0b44aedecf1005e37568a7d363ab6c88651fbb11e460 6271 indent_2.2.12-1+deb11u1_armhf-buildd.buildinfo a6db82be3161b6eeb557764d0384f88841b04a0678adc1d1b2afab239a3830ff 123520 indent_2.2.12-1+deb11u1_armhf.deb Files: 5bb431900c9bae85f491d98b9fe51cc2 81144 debug optional indent-dbgsym_2.2.12-1+deb11u1_armhf.deb d15dc8700513ceaa6b65523cd05573bd 6271 devel optional indent_2.2.12-1+deb11u1_armhf-buildd.buildinfo 3a43b48192e7945f766a241261f83425 123520 devel optional indent_2.2.12-1+deb11u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEELfAsbDZr65zRgOsKct6XE2dptMYFAmaAeTYACgkQct6XE2dp tMZFYhAAmAF/8RACUHjSIsOvLEoyEGetsA9c/WE1Tf/DWMY6HF4kJRGjOHlkpDYI 21yx3vGGsGwniHtvThsg/h9cDNoJ0Hhy3vYTB621Pk6sHbn+Ym7tMSUkqkptQQJ3 ek+kfFibmHQ22EcFqxHmzoLp2raQDocPcXRMQRcG5R7aiq2D/y1+i5toQGOfO9mU 5YWacz0kMb/vW8zEjJMypUnLeeYK6FKe/MLBUCQVwsgN1RX3jReu1BagR79ulHX4 k8vXjAZTqL5H9/tEl2mmdm71T3payQnITkhxJgFa84scrz09JpmWC9Rdo3S2343v h61qgvqteASnScEGqImaA1jLgLEIsxe+VXMnJBrJmO8zlhNaG5hCKGBCvz81Lmdz wNJg/6jxJijsvIVuuEVBPkGtOTYzphvKP1FTk9+UoPNRC4nmgOfKQoiJkx9aFX/r 7bQcIUCKY5WXl3ikHROeV3DeuhSzaaWZA+aIwR46M7uDA2tnli2+kXICwKEVvCVR prUUHyEOFaaDACx57P5KBYj9LlALy/ihfRgYq0i4CDavhRe/Pg1R9ztQd0elp0a8 HY80QaFyarmJaP6yORTB3asfS/X8z4qHMPhIq9dzGSbOtpQ5tA5LXYtyTvRtmRvF eoghEga/mKBo5rtY4frj6bwKqsHyuZI2ErzQPJQpVzvOcFM0QAw= =FRiE -----END PGP SIGNATURE-----