Format: 1.7 Date: Thu, 6 Apr 2006 11:01:04 +0100 Source: kaffeine Binary: kaffeine-xine kaffeine Architecture: i386_translations i386 Version: 0.7.1-1.3ubuntu6 Distribution: autobuild Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Jonathan Riddell Description: kaffeine - versatile media player for KDE 3 kaffeine-xine - Xine engine for kaffeine media player Changes: kaffeine (0.7.1-1.3ubuntu6) dapper; urgency=low . * SECURITY UPDATE: fix buffer overflow * Add kubuntu_05_buffer_overflow.diff * Remotely supplied playlists can be used to execute arbitrary code on the local machine using a buffer overflow in http_peek() while creating HTTP requests * kaffeine/player-parts/playlistimport.cpp: replace custom made checks with those from KIO::NetAccess * References: CVE-2006-0051 http://www.kde.org/info/security/advisory-20060404-1.txt Files: c3f20ced5e4f87eb1c6c0c493cbc2b88 1564096 kde optional kaffeine_0.7.1-1.3ubuntu6_i386.deb 6bfee586151e0e83b4dd01571ad03ce0 180834 kde optional kaffeine-xine_0.7.1-1.3ubuntu6_i386.deb b8b4d4ded90a7eaa0093075ff0223e35 739851 raw-translations - kaffeine_0.7.1-1.3ubuntu6_i386_translations.tar.gz