-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 01 Mar 2026 16:14:12 +0900 Source: calibre Binary: calibre-bin calibre-bin-dbgsym Architecture: armhf Version: 6.13.0+repack-2+deb12u6 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-ubc-05) Changed-By: YOKOTA Hiroshi Description: calibre-bin - powerful and easy to use e-book manager (binary plugins) Changes: calibre (6.13.0+repack-2+deb12u6) bookworm; urgency=medium . * CVE-2026-25635: CHM Input: Ignore internal files that have paths that end up outside the container * CVE-2026-25636: DRYer * CVE-2026-25731: ZIP Output: Change the template engine used for HTML templating from templite to Mustache, for greater safety and performance. Note that this is a breaking change if you use custom templates with ZIP output. * Use pystache instead of templite to fix CVE-2026-25731 * Add NEWS about CVE-2026-25731 fix * CVE-2026-26064: ODT Input: Ensure images are extracted within container * CVE-2026-26065: PDB Input: Ensure extracted images are within the container * CVE-2026-27810: Content server: Sanitize content disposition received as query parameter * CVE-2026-27824: Content server: When banning IPs for repeated login is enabled, only use the IP address not any HTTP headers as the ban key Checksums-Sha1: 5be9545b499828720b46f41c295dce5af28d2f6d 4462884 calibre-bin-dbgsym_6.13.0+repack-2+deb12u6_armhf.deb d30fbe76554b874141b6ae2e4a11bf7140447fff 721436 calibre-bin_6.13.0+repack-2+deb12u6_armhf.deb bec7ceb6374086be7aab87361bf1ad3f13b5ed21 17943 calibre_6.13.0+repack-2+deb12u6_armhf-buildd.buildinfo Checksums-Sha256: a9eb885ed2b8f627e42e30d688dbe4f15ac08580dcd7c0176044224648d193d5 4462884 calibre-bin-dbgsym_6.13.0+repack-2+deb12u6_armhf.deb b1c931b035cb4a60a627940784947c3baa2ae8e85e00a54961d67242b48972ae 721436 calibre-bin_6.13.0+repack-2+deb12u6_armhf.deb 73c1ead4b0ca72eac48efdfd8019e906b3ccabf6a5887c8a079d23859b799039 17943 calibre_6.13.0+repack-2+deb12u6_armhf-buildd.buildinfo Files: 6759c4087cd4fde5d2324269d63513bc 4462884 debug optional calibre-bin-dbgsym_6.13.0+repack-2+deb12u6_armhf.deb a5e85d8d030cd906d5d603783a822bca 721436 text optional calibre-bin_6.13.0+repack-2+deb12u6_armhf.deb e4c2fb47ebf97fc5bcc62515a2e2bcab 17943 text optional calibre_6.13.0+repack-2+deb12u6_armhf-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEiIG3Q3DxwDgRKKeyLRECdjCZQkcFAmn2dKMACgkQLRECdjCZ Qkc1SQ//TlHRmZj2THp7QZhFSkQsxzV2ies4OlLgpPqJUouL85ViXA4UKIXZmKGB Sf0R76j2iIwT/zOeH7VCc37k1BDJcCQOR1ExDw1T7UZ9zzAqlvxV6MCWP8h7FZcr RVWvz40qHZg3vmpMbCCdSXO1HnCfE4kB9v3RBf0gkUa7wmiFHneK0r5qtIeackHr K9DhkCKCx6uIzeTqFy/GIadLEM/7+/fk0tkQ7KGVUS8PLIJgPz0EVq5573EgSfRq wdte1YYxtm9ZHgxu4HxVc9zVzgg3E63J4e+pCf5i6YdarNoEB0dRzlcdwIWgl1j9 xZMeRbCGs0gLHGz8yyLfZt7mbo+A/YSQppGeSftq+UCzOEGLMtX4MREQk8EPqPLg QDDLoCmEHjT0AdpPjkpyfMvcyDCgtLzuZuPcFboncKWdFDOYyRSot0cS/matOFeo zXRE28oOgVXwETQo0xE+H1G7IhANHiz/Pq9SYiWOhvhkP27vZT+exEF14+JyzFsg ZPBdPiq/6jyByCtR7VbiT/tPobJb3XZmQrX/ejT7/S+4Ad0E9taTya9/nPzWBwk4 5xSks+XzeQa8awGPgJcJhBtILnhnHUxRL2jJvb2yNzOdHX6KTUlfdheUgUrKL8BV gdWwXxQzA9x0IV0/U82OndiQ7hxCo90AAmoo3fRtA+6O/OKbXWQ= =scJg -----END PGP SIGNATURE-----