-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 3.0 (quilt) Source: icu Binary: libicu52, libicu52-dbg, libicu-dev, icu-devtools, icu-doc Architecture: any all Version: 52.1-7.1 Maintainer: Jay Berkenbilt <[email protected]> Homepage: http://www.icu-project.org Standards-Version: 3.9.5 Build-Depends: cdbs (>= 0.4.106~), debhelper (>> 9~), dpkg-dev (>= 1.16.1~), autotools-dev Build-Depends-Indep: doxygen (>= 1.7.1) Package-List: icu-devtools deb libdevel optional arch=any icu-doc deb doc optional arch=all libicu-dev deb libdevel optional arch=any libicu52 deb libs optional arch=any libicu52-dbg deb debug extra arch=any Checksums-Sha1: 6de440b71668f1a65a9344cdaf7a437291416781 23875368 icu_52.1.orig.tar.gz a14ee646205791d253022cf9f26b120e1884ea05 25340 icu_52.1-7.1.debian.tar.xz Checksums-Sha256: 2f4d5e68d4698e87759dbdc1a586d053d96935787f79961d192c477b029d8092 23875368 icu_52.1.orig.tar.gz 0141af871d3fd2ca3dba9b8b255b2443f2fae2b9fb70aa7eedfdb5383303841d 25340 icu_52.1-7.1.debian.tar.xz Files: 9e96ed4c1d99c0d14ac03c140f9f346c 23875368 icu_52.1.orig.tar.gz 15603a20bc70b87f0d0af3737d899cc1 25340 icu_52.1-7.1.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQQcBAEBCgAGBQJU4Vs+AAoJELjWss0C1vRzhUwf/1Vi4JoOjOgWFo0V6cM+2SWU l6iBMx4fb9Qzld+k1AGLih5/OT2DLn8pY7gaEz441LDOWEnvfNjXNlXX5iYY2U1d U+4KnUHKJkkvqGyX/BIpEF4xV4tIGDR2q9/ONlXvBN0G4+S+bRHXD6yPwkTwTsCp oME6yeL0q52dMC8u84wDEbUvXZSKUZtqI1/tYvy0YiaeV16f/j2y0tQ22c9QlC0X 74Uab1E+txirroJUjYURvhuteXhAd8VD3mBhAWvJ83mMMx55j+q4X6iKFVqZZriS TgndAsTcsC5QRN5fP6wuNR+fTrDxnkFcypKRjPgPB5ILkhVP1zrKBj72Nes+za2X hU2UZLSIjkeJ+2ThWI8O4MGL8aDHAwMdI8XHzoILpGbT4fCs60G66SCML60lXJwA sIG4uGw0/PoFRiPpaeaknL4K8mbZR+sLxeQpnrgGnuGXzB1EPscUbaQ23PT1pkFZ HqQHexEz2bVqUMH5H6wzghYIE4+lXh3V3XZfhS0b31xncS4C/PlFxRhv+U2Gq5BB Mzb/+xpKWycfFFdJFWYe8uHt2FalDxwBmPuGF/Z92bMNMXCpcevriynx4XbJt8lT 4TGNoapIoOyxNFAYWW4/b/3jNTUURBw3d8Y0Lk7I2goYQ4va/5NUaMMvbk+Zb5sQ BnZa6/20BOx5CkK0IatAYoQBcp5MHomd82PM3CBM5SNET7RfpHk9JCuxK8Ph85Qb Oe9ywVqyBLtxXayG6EHQrorOYpTwJ9Lmy7uMF3FYELasgJzFdOzWtudX8L3FZLWP k7ro6yg8XEVqFQYQUqf6zYdWXI3S7MX20LQc6I7SlFk1YVx1JvMtUio8/WdwJrHP GCvgaAMXYzeFd1LkG45kIujNoVK2lwAV/gIDm4GytClBDYmwwwJ+u3w7z3+h4r8y dmmn34/tK+9ARq4cdIodayWaJjW3vLCd+jcyLNuKTzFGCCywGs/mfWFUlKJaNuKe b5SlXgt2mBYYzDqOmXqC78EU19dW8p/rcA+zEiH8QL7SrverYowGhHH9t+VffF9a 3SorPJ7UI8fi/HaW1lddRmsCRL+gM2IXXguQXbXVGlunlRzFzsbT0xaWKCk80yj5 uC25GxOXwqpswAUk2BUXtar4cZnd9qd+KIVPUYGVbp4M0FHkPLXIY+fzrX5ElenK 9irKSf2rpjOqrRR4eYmAP3n47Qod+SoKxAGV8UWqO4YJ7zthG/RE7l+StvLDG+EQ xISHJdWg/LLyKBb0mrnhUdUVX4GdHW66adjqYQhIe0b6Yg0cjd/wmddCu7yRUCcF otSIOCtomALD3q8F+VF0e9rHVRkQypwap9Inj58kr0UVr1TYkyvS9cs2F0KVO+s= =OeU2 -----END PGP SIGNATURE----- Changes: icu (52.1-7.1) unstable; urgency=high * Non-maintainer upload by the Security Team. * Unfixed issue from the previous upload (closes: #776264) - CVE-2014-6585: out-of-bounds read. * Issues fixed in chromium 40.0.2214.91 (closes: #776265, #776719). - CVE-2014-7923: memory corruption in regular expression comparison. - CVE-2014-7926: memory corruption in regular expression comparison. - CVE-2014-7940: uninitialized memory in i18n/icol.cpp. - CVE-2014-9654: more regular expression handling issues. -- Michael Gilbert <[email protected]> Sun, 15 Feb 2015 22:19:14 +0000