Format: 1.7 Date: Tue, 10 Mar 2009 08:43:20 -0400 Source: gst-plugins-good0.10 Binary: gstreamer0.10-plugins-good-doc gstreamer0.10-plugins-good gstreamer0.10-esd gstreamer0.10-plugins-good-dbg Architecture: i386_translations i386 all Version: 0.10.6-0ubuntu4.2 Distribution: gutsy Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Marc Deslauriers Description: gstreamer0.10-esd - GStreamer plugin for ESD gstreamer0.10-plugins-good - GStreamer plugins from the "good" set gstreamer0.10-plugins-good-dbg - GStreamer plugins from the "good" set gstreamer0.10-plugins-good-doc - GStreamer documentation for plugins from the "good" set Launchpad-Bugs-Fixed: 325261 325261 325261 Changes: gst-plugins-good0.10 (0.10.6-0ubuntu4.2) gutsy-security; urgency=low . * SECURITY UPDATE: Remote code execution via crafted Composition Time To Sample (ctts) atom data in quicktime demuxer (LP: #325261) - debian/patches/05_SECURITY_CVE-2009-0386-0387-0397.patch: make sure j never goes past stream->n_samples in gst/qtdemux/qtdemux.c. - CVE-2009-0386 * SECURITY UPDATE: Remote code execution via crafted Sync Sample (aka stss) atom data in quicktime demuxer (LP: #325261) - debian/patches/05_SECURITY_CVE-2009-0386-0387-0397.patch: make sure index is bigger than 0 and never goes past stream->n_samples in gst/qtdemux/qtdemux.c. Also, safely free stream->samples and stream->segments. - CVE-2009-0387 * SECURITY UPDATE: Remote code execution via crafted Time-to-sample (aka stts) atom data in quicktime demuxer (LP: #325261) - debian/patches/05_SECURITY_CVE-2009-0386-0387-0397.patch: make sure i and index never go past stream->n_samples in gst/qtdemux/qtdemux.c. - CVE-2009-0397 Files: 11b4f7acd83c04004f5fc6a8fb72d832 118816 doc optional gstreamer0.10-plugins-good-doc_0.10.6-0ubuntu4.2_all.deb 5b9ad6841bb34d54407085a873edbad9 41222 raw-translations - gst-plugins-good0.10_0.10.6-0ubuntu4.2_i386_translations.tar.gz 49811711b54ba7aaff1544d9d20cc68d 41398 libs optional gstreamer0.10-esd_0.10.6-0ubuntu4.2_i386.deb 568321670e8107f5db63d60d905dad93 831526 libs optional gstreamer0.10-plugins-good_0.10.6-0ubuntu4.2_i386.deb e5c7b780c1ce75813b403e25f6730867 2191584 libdevel extra gstreamer0.10-plugins-good-dbg_0.10.6-0ubuntu4.2_i386.deb Original-Maintainer: Maintainers of GStreamer packages