rlottie (0.1+dfsg-4.3)
[PTS] [DDPO]
OK: VCS matches the version in the archive
- Git: https://salsa.debian.org/debian/rlottie.git
-
- Branch: debian/master
- Path: debian/changelog
- Repo size: 114688
- Browser: https://salsa.debian.org/debian/rlottie
- Last scan: 2026-05-11 11:16:05+00
- Next scan: 2026-05-17 10:27:00+00
- Merge requests: 1
- CI pipeline status: failed
- Debian changelog in Git:
rlottie (0.1+dfsg-4.3) unstable; urgency=medium
* Non-maintainer upload.
* add cmake4.patch (Closes: #1113469)
* CVE-2025-0634 (Closes: #1109341)
CVE-2025-53074
CVE-2025-53075
Most patches to fix these issues are already part of:
Fix-crash-on-invalid-data.patch
The remaining boundary check is left in:
CVE-2025-0634-CVE-2025-53074-CVE-2025-53075.patch
For the sake of completeness, the whole upstream patch
for these CVEs is added in:
CVE-2025-0634-CVE-2025-53074-CVE-2025-53075.patch.org
-- Thorsten Alteholz <debian@alteholz.de> Tue, 18 Nov 2025 12:05:10 +0100
- This branch is even with tag debian/0.1+dfsg-4.3