[ubuntu/natty-security] vlc_1.1.9-1ubuntu1.3_amd64_translations.tar.gz, vlc, vlc_1.1.9-1ubuntu1.3_armel_translations.tar.gz, vlc_1.1.9-1ubuntu1.3_i386_translations.tar.gz 1.1.9-1ubuntu1.3 (Accepted)

Benjamin Drung bdrung at ubuntu.com
Thu Jul 21 20:03:49 UTC 2011


vlc (1.1.9-1ubuntu1.3) natty-security; urgency=low

  * SECURITY UPDATE: Heap overflow in RealMedia demuxer (LP: #807486)
    - debian/patches/CVE-2011-2587.patch: real: fix heap buffer overflow,
      thanks to Rémi Denis-Courmont
    - CVE-2011-2587
    - VideoLAN-SA-1105
  * SECURITY UPDATE: Heap overflow in AVI demuxer (LP: #807488)
    - debian/patches/CVE-2011-2588.patch: AVI: fix heap buffer overflow,
      thanks to Rémi Denis-Courmont
    - CVE-2011-2588
    - VideoLAN-SA-1106

Date: Mon, 18 Jul 2011 15:48:36 +0200
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/vlc/1.1.9-1ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Mon, 18 Jul 2011 15:48:36 +0200
Source: vlc
Binary: libvlc-dev libvlc5 libvlccore-dev libvlccore4 mozilla-plugin-vlc vlc vlc-data vlc-dbg vlc-nox vlc-plugin-fluidsynth vlc-plugin-ggi vlc-plugin-jack vlc-plugin-notify vlc-plugin-pulse vlc-plugin-sdl vlc-plugin-svg vlc-plugin-svgalib vlc-plugin-zvbi
Architecture: source
Version: 1.1.9-1ubuntu1.3
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Description: 
 libvlc-dev - development files for libvlc
 libvlc5    - multimedia player and streamer library
 libvlccore-dev - development files for libvlccore
 libvlccore4 - base library for VLC and its modules
 mozilla-plugin-vlc - multimedia plugin for web browsers based on VLC
 vlc        - multimedia player and streamer
 vlc-data   - Common data for VLC
 vlc-dbg    - debugging symbols for vlc
 vlc-nox    - multimedia player and streamer (without X support)
 vlc-plugin-fluidsynth - FluidSynth plugin for VLC
 vlc-plugin-ggi - GGI video output plugin for VLC
 vlc-plugin-jack - Jack audio plugins for VLC
 vlc-plugin-notify - LibNotify plugin for VLC
 vlc-plugin-pulse - PulseAudio plugin for VLC
 vlc-plugin-sdl - SDL video and audio output plugin for VLC
 vlc-plugin-svg - SVG plugin for VLC
 vlc-plugin-svgalib - SVGAlib video output plugin for VLC
 vlc-plugin-zvbi - VBI teletext plugin for VLC
Launchpad-Bugs-Fixed: 807486 807488
Changes: 
 vlc (1.1.9-1ubuntu1.3) natty-security; urgency=low
 .
   * SECURITY UPDATE: Heap overflow in RealMedia demuxer (LP: #807486)
     - debian/patches/CVE-2011-2587.patch: real: fix heap buffer overflow,
       thanks to Rémi Denis-Courmont
     - CVE-2011-2587
     - VideoLAN-SA-1105
   * SECURITY UPDATE: Heap overflow in AVI demuxer (LP: #807488)
     - debian/patches/CVE-2011-2588.patch: AVI: fix heap buffer overflow,
       thanks to Rémi Denis-Courmont
     - CVE-2011-2588
     - VideoLAN-SA-1106
Checksums-Sha1: 
 cb7454bbb9f33730c9a0af000dd8f44f9099e5ec 4542 vlc_1.1.9-1ubuntu1.3.dsc
 519513f06554ca5c560f15020bea9e919d6c091d 83272 vlc_1.1.9-1ubuntu1.3.debian.tar.gz
Checksums-Sha256: 
 e4e2127b95108e0bca3680b398082fbc64327dfaeddb5657a2e57b343d5da7e5 4542 vlc_1.1.9-1ubuntu1.3.dsc
 e6bf6961278d41aacabcf6ee7f3cda3638813d94b1ae1d85d88ca456cf0f272e 83272 vlc_1.1.9-1ubuntu1.3.debian.tar.gz
Files: 
 5aefa7ec711a5ec98167681b28cbab64 4542 video optional vlc_1.1.9-1ubuntu1.3.dsc
 4cb54849e935e40c1b4ae6e0e7131420 83272 video optional vlc_1.1.9-1ubuntu1.3.debian.tar.gz
Original-Maintainer: Debian multimedia packages maintainers <pkg-multimedia-maintainers at lists.alioth.debian.org>


More information about the Natty-changes mailing list