[ubuntu/trusty-proposed] mp3gain 1.5.2-r2-6 (Accepted)

Logan Rosen loganrosen at gmail.com
Thu Mar 20 15:17:10 UTC 2014


mp3gain (1.5.2-r2-6) unstable; urgency=high

  * Add various patches from Daniel Kobras' mpg123 packaging to fix
    buffer overflows in the embedded copy/fork of mpglib
    - CVE-2003-0577 (originally #201698 in mpg123)
    - CVE-2004-0805 (originally #270542 in mpg123)
    - CVE-2004-0991
    - CVE-2006-1655 (originally #361863 in mpg123)
    (Closes: #740268, hopefully)
  * debian/patches/*.diff: adjust so gbp-pq can import all of them
  * debian/patches/*.diff: update Sourceforge bug URLs to new layout
    (but keep the old versions for posterity)

Date: 2014-03-19 16:19:26.170746+00:00
Changed-By: Fabrizio Regalli <fabreg at fabreg.it>
Signed-By: Logan Rosen <loganrosen at gmail.com>
https://launchpad.net/ubuntu/trusty/+source/mp3gain/1.5.2-r2-6
-------------- next part --------------
Sorry, changesfile not available.


More information about the Trusty-changes mailing list