Format: 1.8 Date: Wed, 24 Jul 2019 14:03:37 -0400 Source: libebml Binary: libebml4v5 libebml-dev Architecture: arm64 Version: 1.3.3-1ubuntu0.1 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libebml-dev - access library for the EBML format (development files) libebml4v5 - access library for the EBML format (shared library) Changes: libebml (1.3.3-1ubuntu0.1) xenial-security; urgency=medium . * SECURITY UPDATE: heap-based out of bounds read - debian/patches/CVE-2019-13615-1.patch: check the max size to read before actually reading in src/EbmlElement.cpp. - debian/patches/CVE-2019-13615-2.patch: do not output an element with size Unknown if it's not allowed in src/EbmlElement.cpp. - debian/patches/CVE-2019-13615-3.patch: exit the max size loop when there's nothing left possible to find in src/EbmlElement.cpp. - debian/patches/CVE-2019-13615-4.patch: rework the way we look at the end boundary when looking an element in a parent in src/EbmlElement.cpp. - CVE-2019-13615 Checksums-Sha1: ddbe912f29ea91b3f57e7d9571ef4177e137332c 68482 libebml-dev_1.3.3-1ubuntu0.1_arm64.deb 47cbfc3f8a1b16f3722884980b414658110f1c3f 214680 libebml4v5-dbgsym_1.3.3-1ubuntu0.1_arm64.ddeb e65c156e4492c98f01b90348026bceb2e21acd89 43484 libebml4v5_1.3.3-1ubuntu0.1_arm64.deb Checksums-Sha256: cf15e6ad859e5ea10a0e959d680a37aa15c8c7015e39537f144a2ee8e8436947 68482 libebml-dev_1.3.3-1ubuntu0.1_arm64.deb 7878fdffcb90251f899b20eea76f31e12f81bd606aeb312355e228503734ff98 214680 libebml4v5-dbgsym_1.3.3-1ubuntu0.1_arm64.ddeb d9540aa54520549ebe5546c4846341b9ba8f791c3339c058caa9f9b42bdd0bd2 43484 libebml4v5_1.3.3-1ubuntu0.1_arm64.deb Files: 4e5c5794f67c3305135c616801cf09fa 68482 libdevel optional libebml-dev_1.3.3-1ubuntu0.1_arm64.deb 539e7a6122a031dbf4333816f9eca899 214680 libs extra libebml4v5-dbgsym_1.3.3-1ubuntu0.1_arm64.ddeb 8349996f32ca4327e3b19d91d49e42a9 43484 libs optional libebml4v5_1.3.3-1ubuntu0.1_arm64.deb Original-Maintainer: Debian Multimedia Maintainers