Format: 1.7 Date: Wed, 27 Feb 2008 00:33:06 +0100 Source: vlc Binary: vlc vlc-nox libvlc0 libvlc0-dev vlc-plugin-esd vlc-plugin-alsa vlc-plugin-sdl vlc-plugin-ggi vlc-plugin-glide vlc-plugin-arts mozilla-plugin-vlc vlc-plugin-svgalib wxvlc Architecture: all i386_translations i386 Version: 0.8.6.release.d-0ubuntu4 Distribution: hardy Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Emanuele Gentili Description: libvlc0 - multimedia player and streamer library libvlc0-dev - development files for VLC mozilla-plugin-vlc - multimedia plugin for web browsers based on VLC vlc - multimedia player and streamer vlc-nox - multimedia player and streamer (without X support) vlc-plugin-alsa - dummy transitional package vlc-plugin-arts - aRts audio output plugin for VLC vlc-plugin-esd - Esound audio output plugin for VLC vlc-plugin-ggi - GGI video output plugin for VLC vlc-plugin-glide - Glide video output plugin for VLC vlc-plugin-sdl - SDL video and audio output plugin for VLC vlc-plugin-svgalib - SVGAlib video output plugin for VLC wxvlc - dummy transitional package Launchpad-Bugs-Fixed: 194907 195949 Changes: vlc (0.8.6.release.d-0ubuntu4) hardy; urgency=low . [ Emanuele Gentili ] * SECURITY UPDATE: - debian/patches/021_CVE-2008-0984.diff (LP: #195949) + VLC media player's MPEG-4 file format parser (a.k.a. the MP4 demuxer) suffers from an arbitrary memory overwrite vulnerability when using crash the player instance. . * References - http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0984 - http://www.videolan.org/security/sa0802.html . [ Mario Limonciello ] * debian/control: - Build debian on libxul-dev instead of firefox-dev * debian/rules: - Use xulrunner-config rather than firefox-config (LP: #194907) Files: aec3294f5f63b73b0f768ef34c2bfde2 820 graphics optional vlc-plugin-alsa_0.8.6.release.d-0ubuntu4_all.deb 6b6b37555e68c0b605d95c2ae4bcd29c 810 graphics optional wxvlc_0.8.6.release.d-0ubuntu4_all.deb 6060f92452c09348b71e89cf4a5936ec 5015128 raw-translations - vlc_0.8.6.release.d-0ubuntu4_i386_translations.tar.gz 3e57c1a6cf74dc840b97a347742f3ea5 1134494 graphics optional vlc_0.8.6.release.d-0ubuntu4_i386.deb 227601c5e930980cbf58eb12b0ffbe9c 4688202 net optional vlc-nox_0.8.6.release.d-0ubuntu4_i386.deb d4d3b50c0a944ec88641d86957011c47 810486 libs optional libvlc0_0.8.6.release.d-0ubuntu4_i386.deb 531848262cb4321a4d0d1afa261ad161 20202 libdevel optional libvlc0-dev_0.8.6.release.d-0ubuntu4_i386.deb e09d9ea0e07c7e77027066c33d281230 4866 graphics optional vlc-plugin-esd_0.8.6.release.d-0ubuntu4_i386.deb 3d1073aac62340b58b55bf1b24c9fbf5 10958 graphics optional vlc-plugin-sdl_0.8.6.release.d-0ubuntu4_i386.deb 0b2135bf8ba7dfeee133bd70d10daea7 6068 graphics optional vlc-plugin-ggi_0.8.6.release.d-0ubuntu4_i386.deb ced7d95251f2ba100e66471694525b72 4240 graphics optional vlc-plugin-glide_0.8.6.release.d-0ubuntu4_i386.deb 7558eedd18a92eedee3d3adc538a73c9 4122 graphics optional vlc-plugin-arts_0.8.6.release.d-0ubuntu4_i386.deb 3a351dc18722707ef9de3acb77cea30d 37918 graphics optional mozilla-plugin-vlc_0.8.6.release.d-0ubuntu4_i386.deb 13920a3daa97e41d26a6181cfbd190a6 4574 graphics optional vlc-plugin-svgalib_0.8.6.release.d-0ubuntu4_i386.deb Original-Maintainer: Sam Hocevar (Debian packages)