Format: 1.8 Date: Mon, 28 Nov 2016 15:52:57 -0600 Source: ghostscript Binary: ghostscript ghostscript-x ghostscript-doc libgs9 libgs9-common libgs-dev ghostscript-dbg Architecture: powerpc Version: 9.10~dfsg-0ubuntu10.5 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Emily Ratliff Description: ghostscript - interpreter for the PostScript language and for PDF ghostscript-dbg - interpreter for the PostScript language and for PDF - Debug symbo ghostscript-doc - interpreter for the PostScript language and for PDF - Documentati ghostscript-x - interpreter for the PostScript language and for PDF - X11 support libgs-dev - interpreter for the PostScript language and for PDF - Development libgs9 - interpreter for the PostScript language and for PDF - Library libgs9-common - interpreter for the PostScript language and for PDF - common file Changes: ghostscript (9.10~dfsg-0ubuntu10.5) trusty-security; urgency=medium . * SECURITY UPDATE: Information disclosure through getenv, filenameforall - debian/patches/CVE-2013-5653.patch: Have filenameforall and getenv honor SAFER - CVE-2013-5653 * SECURITY UPDATE: userparams with %pipe% in paths allow remote shell exec - debian/patches/CVE-2016-7976.patch: Add a file permissions callback - CVE-2016-7976 * SECURITY UPDATE: use-after-free and remote code execution - debian/patches/CVE-2016-7978.patch: Reference count device icc profile - CVE-2016-7978 * SECURITY UPDATE: type confusion allows remote code execution - debian/patches/CVE-2016-7979.patch: DSC parser - validate parameters - CVE-2016-7979 * SECURITY UPDATE: NULL dereference - debian/patches/CVE-2016-8602.patch: check for sufficient params - CVE-2016-8602 * SECURITY UPDATE: fix SAFER permissions - debian/patches/safer.patch: Be rigorous with SAFER permissions Checksums-Sha1: 2eddc623cbd5e5ac2698d7e697e1b32ccc6d9b2d 40898 ghostscript_9.10~dfsg-0ubuntu10.5_powerpc.deb 102612773600af0ccbf62777819c3ec5e1459ad0 1000 ghostscript-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb bbee0d1348e1022dbcf3305f01a8d3b99ab15519 32696 ghostscript-x_9.10~dfsg-0ubuntu10.5_powerpc.deb 352c4365b4c85cd23f3d3ea8e7f5d6bba8475066 936 ghostscript-x-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 8879e87aec06dec513470b8609063d8122eff432 1714504 libgs9_9.10~dfsg-0ubuntu10.5_powerpc.deb e216af58d0b010a0de7dcb9f8582386345c7b69f 966 libgs9-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb fd17afbe0834f220359c2d2a62ab475802cb3ff3 1956600 libgs-dev_9.10~dfsg-0ubuntu10.5_powerpc.deb b5ee912d48618f54cf0ffaf8d04fe231c79d4142 982 libgs-dev-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 83d8f420d26ff871238b610b1d423cf8fe8441c1 5190370 ghostscript-dbg_9.10~dfsg-0ubuntu10.5_powerpc.deb Checksums-Sha256: 5b8b2c0990329a3ee96456bb1b7782054da9017ee9087fa32f79c7864273b32f 40898 ghostscript_9.10~dfsg-0ubuntu10.5_powerpc.deb b2979a7c22301080c925f9a8a8dd8715f846f91a548205bec7759f74f75f32e3 1000 ghostscript-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 1f05eda5a1e5dd804698f1274e3ab1247e3dcabcce8c1d28719cc9ed5403810e 32696 ghostscript-x_9.10~dfsg-0ubuntu10.5_powerpc.deb f42bdb561ebc194e0861803921493146278f9eec09d19607fc8dc51baa59208e 936 ghostscript-x-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb dcdfc4f5e1bbacc8a408ba9b7da18e3eb24a3bba784d3569a5e196af289df5ca 1714504 libgs9_9.10~dfsg-0ubuntu10.5_powerpc.deb 468b6846469cb5512b75c17fdc90760e4c83bd041efa97630933a95677405d17 966 libgs9-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 9fdf2d7256a5309ed647196e3bf4bc9f7d6e4bc7030c768f938e7e6a6ace959c 1956600 libgs-dev_9.10~dfsg-0ubuntu10.5_powerpc.deb b557b290e33c51650e34b05ec1be17b4e5d725205a42f65b17f92d6502355493 982 libgs-dev-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb e0ccc30f8fbd6a210699bdeaf6c1055a48e827652afc45cd81ed1812dcc09f55 5190370 ghostscript-dbg_9.10~dfsg-0ubuntu10.5_powerpc.deb Files: ae73cfbbbd3117963048c6fd8815f608 40898 text optional ghostscript_9.10~dfsg-0ubuntu10.5_powerpc.deb 4d73a18657cfbe036613177c15f349bc 1000 text extra ghostscript-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb cee344bbc10b6fc728fef58d7ce53542 32696 text optional ghostscript-x_9.10~dfsg-0ubuntu10.5_powerpc.deb 937ae05124a90c7a9c72c6b33d320c45 936 text extra ghostscript-x-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 23dbbae8f74b6bf46632f19489e7fa89 1714504 libs optional libgs9_9.10~dfsg-0ubuntu10.5_powerpc.deb 7de09901d924263504ae641ba57ec2a3 966 libs extra libgs9-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 05d924421a88abec6b6ad56a0841df24 1956600 libdevel optional libgs-dev_9.10~dfsg-0ubuntu10.5_powerpc.deb 9241d50c92c122c2450c401a303ba8f8 982 libdevel extra libgs-dev-dbgsym_9.10~dfsg-0ubuntu10.5_powerpc.ddeb 83adad410acc07917f45f3342b16d91a 5190370 debug extra ghostscript-dbg_9.10~dfsg-0ubuntu10.5_powerpc.deb Original-Maintainer: Debian Printing Team