[Bug 127166] [Sync request] Sync flac123 (0.0.11-1) from Debian unstable (main)
Michael Bienia
michael at vorlon.ping.de
Fri Jul 20 14:30:09 BST 2007
Public bug reported:
Binary package hint: flac123
Please sync flac123 (0.0.11-1) from Debian unstable (main).
The current package has no Ubuntu changes.
Thanks.
Changelog:
flac123 (0.0.11-1) unstable; urgency=low
* QA upload.
* New upstream release
+ fixes buffer overflow in vorbis comment parsing (CVE-2007-3507),
closes: #432008.
+ patch flac-1.1.13 dropped.
* Updated debian/copyright.
-- Julien Cristau <jcristau at debian.org> Fri, 20 Jul 2007 14:53:07
+0200
** Affects: flac123 (Ubuntu)
Importance: Low
Status: Confirmed
** Changed in: flac123 (Ubuntu)
Importance: Undecided => Low
Status: New => Confirmed
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2007-3507
--
[Sync request] Sync flac123 (0.0.11-1) from Debian unstable (main)
https://bugs.launchpad.net/bugs/127166
You received this bug notification because you are a member of Ubuntu
Package Archive Administrators, which is a direct subscriber.
More information about the ubuntu-archive
mailing list