[ubuntu/jammy-security] minidlna 1.3.0+dfsg-2.1ubuntu0.1 (Accepted)

Allen Huang allen.huang at canonical.com
Wed Sep 27 09:24:24 UTC 2023

minidlna (1.3.0+dfsg-2.1ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: DNS rebinding attack
    - debian/patches/CVE-2022-26505.patch: validate HTTP requests to
      protect against DNS rebinding.
    - CVE-2022-26505
  * SECURITY UPDATE: buffer overflow
    - debian/patches/CVE-2023-33476.patch: fix chunk length parsing.
    - CVE-2023-33476

Date: 2023-09-26 09:09:14.552226+00:00
Changed-By: Allen Huang <allen.huang at canonical.com>
-------------- next part --------------
Sorry, changesfile not available.

More information about the jammy-changes mailing list