Accepted: xine-lib 1.1.10-1 (source)

Ubuntu Installer archive at
Sat Feb 2 02:48:39 GMT 2008

 OK: xine-lib_1.1.10.orig.tar.gz
 OK: xine-lib_1.1.10-1.diff.gz
 OK: xine-lib_1.1.10-1.dsc
     -> Component: main Section: libs

Origin: Debian/unstable
Format: 1.7
Date: Fri,  01 Feb 2008 16:21:13 +0000
Source: xine-lib
Binary: libxine1-doc, libxine1, libxine1-bin, libxine-dev, libxine1-ffmpeg, libxine1-gnome, libxine1-console, libxine1-x, libxine1-misc-plugins, libxine1-dbg, libxine1-plugins, libxine1-all-plugins
Architecture: source
Version: 1.1.10-1
Distribution: hardy
Urgency: high
Maintainer: Reinhard Tartler <siretart at>
Changed-By: Reinhard Tartler <siretart at>
Closes: 448801 458103 458865 459836 460551 461970
 xine-lib (1.1.10-1) unstable; urgency=high
   * New upstream release (Closes: #459836)...
   * ... fixing some security bugs:
     - CVE-2008-0225: Heap-based buffer overflow in rmff_dump_cont function
       which allows remote attacker to execute arbitrary code via a crafted
       SDP Abstract attribute (Closes: #460551).
       This also acks 1.1.8-3+lenny1 (NMU by the security team).
     - Related to CVE-2006-1664: Buffer overflow which allows a remote
       attacker to execute arbitrary code or crash the client program via a
       crafted ASF header.
   * ... and fixing some other bugs, including:
     - Disappearing audio. (Closes: #461970)
   [ Darren Salt ]
   * Build-depend on gs-gpl | gs. Avoids FTBFS where recommended packages
     aren't automatically installed.
   * Put libxine1-doc in section libdevel.
   * Move libxine1-doc | libxine-doc to Suggests: in libxine1. (Closes: #458103)
   * Add postinst scripts to ensure that the documentation symlinks are
     properly created. (This is really dpkg bugginess.) (Closes: #458865)
   * Standards version 3.7.3; no changes needed.
   [ Reinhard Tartler ]
   * Actually install and
     on i386. debian/rules accidentally used $< where it should have been
     $^. Thanks to Gert Kulyk for reporting!                  LP: #182400
   * Fix XS-Hg-VCS headers in debian/control                  LP: #183886
 xine-lib (1.1.9-1) unstable; urgency=low
   * New upstream release.
   [Darren Salt]
   * Re-enable the pulseaudio plugin.
   [Reinhard Tartler]
   * Remove really unnecessary versioned build depends on binutils. Even
     oldstable (sarge) has a newer version available.
   * Bug fix: "unable to handle ipv6 MRLs", thanks to Mau (Closes:
 2cb782973021c57fb21c288c51c4334d 9055638 libs optional xine-lib_1.1.10.orig.tar.gz
 ca9e2da7fa9ba0ae4d1cea82281caefd 25468 libs optional xine-lib_1.1.10-1.diff.gz
 9d798e232a2a55add870bbbf3179aa7e 1784 libs optional xine-lib_1.1.10-1.dsc

