-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5408-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 21, 2023 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : libwebp CVE ID : CVE-2023-1999 Debian Bug : 1035371 Irvan Kurniawan discovered a double free in the libwebp image compression library which may result in denial of service. For the stable distribution (bullseye), this problem has been fixed in version 0.6.1-2.1+deb11u1. We recommend that you upgrade your libwebp packages. For the detailed security status of libwebp please refer to its security tracker page at: https://security-tracker.debian.org/tracker/libwebp Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmRqXHAACgkQEMKTtsN8 TjYWbA//X8f1KXJF3/lm3Nvrnfzn0+8fkaKFXug7itX0e9QI1UPfynJQpVHhvvYv 0FCi6GUhzWh79agIb3vzppMR3HcgGZj4gLE6bQ5AWa0Jx9kpdeE+UuYA4y8egO4+ wSaUg8aL71vjATO1yuANEgduLDazj05MgG1o+DwTB0kXdku/50OSOBD03GBfv0EQ z1CLFmSh1JlXFak9G9ggq/WUixue8SgoNGV7S3cTJ5DJb1lFg4GtlXUFOGbO62dE BZHMacNmiqnIVCM8DOLpWvN+miZgUeBWuV4mcfa6DOu4w6vDUz4wDINOSQb10crK 3xbhQbCpKQKEa/uIDm89VxJfNSXCOn+TmXr1TY3r47a7TGS8a7b+9Ol4QkT/zk9s c/1M9/+/7dDPf/RZYoX0yNEakEDlU2kBiSj0IVSQzWWuRi/oJSdgHjvDOXRmLeT1 BK/uvmhCoLK4iWILndfD+muMO3A326dk4luex7QMaW5LfN0ZOPOJAddLNTQiBEZ0 ovBKnw3LLpnT15iJcW0Y+xz9YajEsVXPxKDVuUAdHgniHevOqRF3JQsfEIsCKUnR sSh7pVGh7PFbvmRyJsnEcZ2vPpCWqDOkofCT49xxpkiF/8tJS0EpmDialceBpJeY /UKMzuGWUEivzTk7QoEdjGCFewi7Qorcsv4uFvulZ5wdGFuaVtcoa8 -----END PGP SIGNATURE-----