-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 23 Jun 2024 18:25:00 +0200 Source: indent Binary: indent indent-dbgsym Architecture: i386 Version: 2.2.12-1+deb11u1 Distribution: bullseye Urgency: low Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Santiago Vila Description: indent - C language source code formatting program Closes: 1036851 1049366 1061543 Changes: indent (2.2.12-1+deb11u1) bullseye; urgency=low . * Restore the ROUND_UP macro and adjust the initial buffer size. Patch from the author, backported from 2.2.13. Fix memory handling problem. Closes: #1036851. * Apply two patches by Petr Písař . - Fix an out-of-buffer read in search_brace()/lexi() on an condition without parentheses followed with an overlong comment. - Fix a heap buffer overwrite in search_brace(). Closes: #1049366. This one is CVE-2023-40305. * Fix a heap buffer underread in set_buf_break(). Closes: #1061543. Patch by Petr Písař . This is CVE-2024-0911. Checksums-Sha1: 7a5299280a8541066fac32e2a6f3802ad7777153 76504 indent-dbgsym_2.2.12-1+deb11u1_i386.deb c0674104a95f837a13b22dbc98914b48a9988147 6309 indent_2.2.12-1+deb11u1_i386-buildd.buildinfo 339e78209823416ff0ff3cf553d21fc39da0a694 127520 indent_2.2.12-1+deb11u1_i386.deb Checksums-Sha256: 836cac880e01c3b3539a6efc4c6fb0882dea11fbba5d26049725a348d11731b1 76504 indent-dbgsym_2.2.12-1+deb11u1_i386.deb 85f27c231a004729c7fce249db98c05cf8b07b0764998a46cfc31a84d2be487b 6309 indent_2.2.12-1+deb11u1_i386-buildd.buildinfo 439a8e7b6b2683edd5e209b1aa7b9c55aaf9d45d2013989ce489e7b14d21a114 127520 indent_2.2.12-1+deb11u1_i386.deb Files: 60902c73d12fa858ade732d1a0a69b83 76504 debug optional indent-dbgsym_2.2.12-1+deb11u1_i386.deb b845c0d0b9a8482d32e8053e4336ac47 6309 devel optional indent_2.2.12-1+deb11u1_i386-buildd.buildinfo b442754c9e5e4a83d8a6d9e99d536e23 127520 devel optional indent_2.2.12-1+deb11u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEGBeuno8wiDXCewDuqqLQG5ksqMMFAmaAeX4ACgkQqqLQG5ks qMPdew/7BgqYpDVcoQtappwgGp+wPGr6vh40nlqazky4S+u065dOXVIGF7rveaVE DQPRJvXdXyc46nXCaof7Bhnwu4nG0KVSibHptx5AO8wG6FMlcO9EO9nXYxjb4i5E Ehts3CTIWBRcPZ+iLObfq0Es4Zam6WDy29GFHBaAQXjaHCFckcmaCBXpnxqXzSdw ppN3O9BJhqkjv8NxlWlOLLKZRtAzL6+SM2wmlrsGkTFppNoRiXxU2mawCyi8EKai Xzkykee1oiqUgZqt2Py+7kQK0p/t1WdvR8RimO8BXZgbSLzTbe1cHE2vkN8nJblS 8E1CFUozgz1HEUlOpQUnge3auuN4MzKi60fvupzzEFpwxlQ/bljFvkqr4KMDtqS3 mYtOnqPPBjMTgr6ETPsTv6W8BIk5iR+AlVYIKyAPWGWdoGEfa4+nCXlpJKzQLYi/ M2P/CjlzMg0itrgQJ36Hm8XU8hXj4x7h5ux2VUuegOj/iFlLYktri4abCxpFZFS2 cxml4aohnOCeOUNSlmENdrVkUu64rxk6Ud/AU/jkGVBz9WJmw4/IK+KRESrr380c hhMET/70dJSj93TNhcQNczSjAXhaQJ3B/YVNjXQgmuYyZoeOVDWPnRKwzMg0g9xW o9s0S04uE7I5eBuJB7DIOxsh3DeT5krG2NLK0tjYBNIBspXo5yQ= =48MM -----END PGP SIGNATURE-----