[ubuntu/maverick-security] vlc, vlc_1.1.4-1ubuntu1.7_amd64_translations.tar.gz, vlc_1.1.4-1ubuntu1.7_i386_translations.tar.gz, vlc_1.1.4-1ubuntu1.7_armel_translations.tar.gz, vlc_1.1.4-1ubuntu1.7_powerpc_translations.tar.gz 1.1.4-1ubuntu1.7 (Accepted)

Benjamin Drung bdrung at ubuntu.com
Thu Jul 21 20:04:37 UTC 2011


vlc (1.1.4-1ubuntu1.7) maverick-security; urgency=low

  * SECURITY UPDATE: Heap overflow in RealMedia demuxer (LP: #807486)
    - debian/patches/CVE-2011-2587.patch: real: fix heap buffer overflow,
      thanks to Rémi Denis-Courmont
    - CVE-2011-2587
    - VideoLAN-SA-1105
  * SECURITY UPDATE: Heap overflow in AVI demuxer (LP: #807488)
    - debian/patches/CVE-2011-2588.patch: AVI: fix heap buffer overflow,
      thanks to Rémi Denis-Courmont
    - CVE-2011-2588
    - VideoLAN-SA-1106

Date: Mon, 18 Jul 2011 16:10:28 +0200
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/maverick/+source/vlc/1.1.4-1ubuntu1.7
-------------- next part --------------
Format: 1.8
Date: Mon, 18 Jul 2011 16:10:28 +0200
Source: vlc
Binary: libvlc5 libvlc-dev libvlccore4 libvlccore-dev mozilla-plugin-vlc vlc vlc-data vlc-dbg vlc-nox vlc-plugin-fluidsynth vlc-plugin-ggi vlc-plugin-jack vlc-plugin-notify vlc-plugin-pulse vlc-plugin-sdl vlc-plugin-svg vlc-plugin-svgalib vlc-plugin-zvbi
Architecture: source
Version: 1.1.4-1ubuntu1.7
Distribution: maverick-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Description: 
 libvlc-dev - development files for libvlc
 libvlc5    - multimedia player and streamer library
 libvlccore-dev - development files for libvlccore
 libvlccore4 - base library for VLC and its modules
 mozilla-plugin-vlc - multimedia plugin for web browsers based on VLC
 vlc        - multimedia player and streamer
 vlc-data   - Common data for VLC
 vlc-dbg    - debugging symbols for vlc
 vlc-nox    - multimedia player and streamer (without X support)
 vlc-plugin-fluidsynth - FluidSynth plugin for VLC
 vlc-plugin-ggi - GGI video output plugin for VLC
 vlc-plugin-jack - Jack audio plugins for VLC
 vlc-plugin-notify - LibNotify plugin for VLC
 vlc-plugin-pulse - PulseAudio plugin for VLC
 vlc-plugin-sdl - SDL video and audio output plugin for VLC
 vlc-plugin-svg - SVG plugin for VLC
 vlc-plugin-svgalib - SVGAlib video output plugin for VLC
 vlc-plugin-zvbi - VBI teletext plugin for VLC
Launchpad-Bugs-Fixed: 807486 807488
Changes: 
 vlc (1.1.4-1ubuntu1.7) maverick-security; urgency=low
 .
   * SECURITY UPDATE: Heap overflow in RealMedia demuxer (LP: #807486)
     - debian/patches/CVE-2011-2587.patch: real: fix heap buffer overflow,
       thanks to Rémi Denis-Courmont
     - CVE-2011-2587
     - VideoLAN-SA-1105
   * SECURITY UPDATE: Heap overflow in AVI demuxer (LP: #807488)
     - debian/patches/CVE-2011-2588.patch: AVI: fix heap buffer overflow,
       thanks to Rémi Denis-Courmont
     - CVE-2011-2588
     - VideoLAN-SA-1106
Checksums-Sha1: 
 d70c19053d8e02c8d6a6fdfd667dd1e9a2a21535 4366 vlc_1.1.4-1ubuntu1.7.dsc
 181c5d62e3c948afed3c2d4faf4d7cd393c91017 61964 vlc_1.1.4-1ubuntu1.7.debian.tar.gz
Checksums-Sha256: 
 0ae4fcdecc2aabc6a8e664f01453cc417a92fc32b2d953f5fd9f4fe1c8104dc4 4366 vlc_1.1.4-1ubuntu1.7.dsc
 8017fadc4afb561468d9a4cd3c46b50e0cd5640819c007c269c10ec528dd15b2 61964 vlc_1.1.4-1ubuntu1.7.debian.tar.gz
Files: 
 48e86983f45ddf75eac8ec6931955a20 4366 video optional vlc_1.1.4-1ubuntu1.7.dsc
 a21d93b9fd025fe85c5c9b9cd1a0ef20 61964 video optional vlc_1.1.4-1ubuntu1.7.debian.tar.gz
Original-Maintainer: Debian multimedia packages maintainers <pkg-multimedia-maintainers at lists.alioth.debian.org>


More information about the Maverick-changes mailing list