Accepted xmms 1.2.10+cvs20060429-1ubuntu2.1 (source)
Ubuntu Installer
archive at ubuntu.com
Tue Mar 27 22:55:26 BST 2007
Accepted:
OK: xmms_1.2.10+cvs20060429-1ubuntu2.1.dsc
-> Component: main Section: sound
OK: xmms_1.2.10+cvs20060429-1ubuntu2.1.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 26 Mar 2007 19:09:28 -0700
Source: xmms
Binary: xmms-dev xmms
Architecture: source
Version: 1.2.10+cvs20060429-1ubuntu2.1
Distribution: edgy-security
Urgency: low
Maintainer: David Moreno Garza <damog at debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description:
xmms - Versatile X audio player
xmms-dev - XMMS development static library and header files
Changes:
xmms (1.2.10+cvs20060429-1ubuntu2.1) edgy-security; urgency=low
.
* SECURITY UPDATE: code execution via integer overflows in bmp loader.
* xmms/bmp.c: bounds-check sizes, patched inline.
* References
CVE-2007-0653 CVE-2007-0654
Files:
d97a5a09fc238c29c59b8b233644df99 992 sound optional xmms_1.2.10+cvs20060429-1ubuntu2.1.dsc
36a8a27753ac35ce35d76697a272855b 194003 sound optional xmms_1.2.10+cvs20060429-1ubuntu2.1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGCX+RH/9LqRcGPm0RArogAJ4xDsr1ost8gz+oAQ4afVNnZzXIFACffdQw
EZksvjTHF5foup8n4J6W6aE=
=H7wx
-----END PGP SIGNATURE-----
More information about the edgy-changes
mailing list