[ubuntu/natty-security] vlc, vlc_1.1.9-1ubuntu1.1_amd64_translations.tar.gz, vlc_1.1.9-1ubuntu1.1_i386_translations.tar.gz, vlc_1.1.9-1ubuntu1.1_armel_translations.tar.gz 1.1.9-1ubuntu1.1 (Accepted)

Benjamin Drung bdrung at ubuntu.com
Sun Jun 12 11:03:51 UTC 2011


vlc (1.1.9-1ubuntu1.1) natty-security; urgency=low

  * SECURITY UPDATE: Integer overflow in XSPF playlist parser (LP: #795410)
    - debian/patches/fix-xspf-integer-overflow.patch: Fix realloc() integer
      overflow, thanks to Rémi Denis-Courmont
    - CVE-2011-2194
    - VideoLAN-SA-1104

Date: Sat, 11 Jun 2011 21:03:49 +0200
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/vlc/1.1.9-1ubuntu1.1
-------------- next part --------------
Format: 1.8
Date: Sat, 11 Jun 2011 21:03:49 +0200
Source: vlc
Binary: libvlc-dev libvlc5 libvlccore-dev libvlccore4 mozilla-plugin-vlc vlc vlc-data vlc-dbg vlc-nox vlc-plugin-fluidsynth vlc-plugin-ggi vlc-plugin-jack vlc-plugin-notify vlc-plugin-pulse vlc-plugin-sdl vlc-plugin-svg vlc-plugin-svgalib vlc-plugin-zvbi
Architecture: source
Version: 1.1.9-1ubuntu1.1
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Benjamin Drung <bdrung at ubuntu.com>
Description: 
 libvlc-dev - development files for libvlc
 libvlc5    - multimedia player and streamer library
 libvlccore-dev - development files for libvlccore
 libvlccore4 - base library for VLC and its modules
 mozilla-plugin-vlc - multimedia plugin for web browsers based on VLC
 vlc        - multimedia player and streamer
 vlc-data   - Common data for VLC
 vlc-dbg    - debugging symbols for vlc
 vlc-nox    - multimedia player and streamer (without X support)
 vlc-plugin-fluidsynth - FluidSynth plugin for VLC
 vlc-plugin-ggi - GGI video output plugin for VLC
 vlc-plugin-jack - Jack audio plugins for VLC
 vlc-plugin-notify - LibNotify plugin for VLC
 vlc-plugin-pulse - PulseAudio plugin for VLC
 vlc-plugin-sdl - SDL video and audio output plugin for VLC
 vlc-plugin-svg - SVG plugin for VLC
 vlc-plugin-svgalib - SVGAlib video output plugin for VLC
 vlc-plugin-zvbi - VBI teletext plugin for VLC
Launchpad-Bugs-Fixed: 795410
Changes: 
 vlc (1.1.9-1ubuntu1.1) natty-security; urgency=low
 .
   * SECURITY UPDATE: Integer overflow in XSPF playlist parser (LP: #795410)
     - debian/patches/fix-xspf-integer-overflow.patch: Fix realloc() integer
       overflow, thanks to Rémi Denis-Courmont
     - CVE-2011-2194
     - VideoLAN-SA-1104
Checksums-Sha1: 
 36bd5fd0df9cf9e1cc6f8f44ef24869e49b0f14d 4542 vlc_1.1.9-1ubuntu1.1.dsc
 bcbfb67939b32049f45633bc24e938e28b0eae3f 60232 vlc_1.1.9-1ubuntu1.1.debian.tar.gz
Checksums-Sha256: 
 3c4215cdb1a1227cc29e84c3813c47c5bd71bccb81065c1870752f363ddbbbc0 4542 vlc_1.1.9-1ubuntu1.1.dsc
 81ae0aad0af9d24936ce0fe11efb9e032d235e52be0b4129f90708fe76eb4be0 60232 vlc_1.1.9-1ubuntu1.1.debian.tar.gz
Files: 
 524589bdf4ede108bd6435c79a13dcbb 4542 video optional vlc_1.1.9-1ubuntu1.1.dsc
 f54d7a64c9d0229aa916ed32e3fd479d 60232 video optional vlc_1.1.9-1ubuntu1.1.debian.tar.gz
Original-Maintainer: Debian multimedia packages maintainers <pkg-multimedia-maintainers at lists.alioth.debian.org>


More information about the Natty-changes mailing list