Format: 1.8 Date: Mon, 19 Jan 2009 22:05:24 +0100 Source: amarok Binary: amarok amarok-common amarok-engines amarok-engine-xine amarok-engine-yauap amarok-dbg Architecture: all i386_translations i386 Version: 2:1.4.10-0ubuntu3.1 Distribution: intrepid Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Harald Sitter Description: amarok - versatile and easy to use audio player for KDE amarok-common - architecture independent files for Amarok amarok-dbg - debugging symbols for Amarok amarok-engine-xine - xine engine for the Amarok audio player amarok-engine-yauap - Yauap engine for the Amarok audio player amarok-engines - output engines for the Amarok music player Launchpad-Bugs-Fixed: 318555 Changes: amarok (2:1.4.10-0ubuntu3.1) intrepid-security; urgency=low . * SECURITY UPDATE: integer overflows allow remote attackers to execute arbitrary code via an Audible Audio (.aa) file (LP: #318555) - debian/patches/security_audible_tags.diff fix integer overflow while reading audible aa file tags. Based on upstream patch. - http://websvn.kde.org/?view=rev&revision=908415 - http://www.trapkit.de/advisories/TKADV2009-002.txt - CVE-2009-0135 - CVE-2009-0136 Checksums-Sha1: 8777dcf1119e1cc04ee7da94df014928276df87d 7189098 amarok-common_1.4.10-0ubuntu3.1_all.deb 2f759a6a57f3e94f4dfd05323feb57240a49e73e 9348375 amarok_1.4.10-0ubuntu3.1_i386_translations.tar.gz 188805cdf7b2e4bc48101bd7bb5c48692dc96a0a 20876 amarok-engines_1.4.10-0ubuntu3.1_all.deb 63082c1a73c81ec6e157653772689d9159cf25d6 2455166 amarok_1.4.10-0ubuntu3.1_i386.deb 2ae3fc094781ae7696869906c3c6429f9e09e1ea 73120 amarok-engine-xine_1.4.10-0ubuntu3.1_i386.deb 83e556d5aceca5de0586f6b1ed233967ebff6334 42068 amarok-engine-yauap_1.4.10-0ubuntu3.1_i386.deb 62892a22b013831a0130ba8e2f8aa26aa31d3e4e 11214674 amarok-dbg_1.4.10-0ubuntu3.1_i386.deb Checksums-Sha256: 71303019bccf77bd6b488c723a60612d36ffea2ec0b3ca6426c0c9162fd3b2ad 7189098 amarok-common_1.4.10-0ubuntu3.1_all.deb 78ed6a8d026dc0966271c20da21746cafc6eb817d0304c59bcfa51821acc959d 9348375 amarok_1.4.10-0ubuntu3.1_i386_translations.tar.gz e58f157625cd6aeac87062068ab1d716314635897d36674cb79fc8b72edcb50a 20876 amarok-engines_1.4.10-0ubuntu3.1_all.deb 133fb893604f0320525c69dce2d84d84ea8ac960db3869126ffe6dfb13d4925a 2455166 amarok_1.4.10-0ubuntu3.1_i386.deb 0d668fd756fc7c25f1f40471b2ec53445ad93b3d0c94596a60900a4f26b6ceac 73120 amarok-engine-xine_1.4.10-0ubuntu3.1_i386.deb 197803d037f706b7f5169edb7155730de76e3305966eefcb816926ee3557b9a1 42068 amarok-engine-yauap_1.4.10-0ubuntu3.1_i386.deb 20f2d1efce243b3edfe4c2b293aac001bece0892f82ca594e132f0436c5e588c 11214674 amarok-dbg_1.4.10-0ubuntu3.1_i386.deb Files: 14810af1ad0beaceaa6d4ffdef262303 7189098 kde optional amarok-common_1.4.10-0ubuntu3.1_all.deb e028680aa5461366f6d0ef57bf808e64 9348375 raw-translations - amarok_1.4.10-0ubuntu3.1_i386_translations.tar.gz 5e4197198c821aa5ba7b4bf4aa880c48 20876 kde optional amarok-engines_1.4.10-0ubuntu3.1_all.deb 10a4d45271de505b27335b03e63e65e7 2455166 kde optional amarok_1.4.10-0ubuntu3.1_i386.deb ac2195787b0f20e49f0f2c4600af8e0a 73120 kde optional amarok-engine-xine_1.4.10-0ubuntu3.1_i386.deb 27fda4967f148fae1cc9368c2a864580 42068 kde optional amarok-engine-yauap_1.4.10-0ubuntu3.1_i386.deb 209fb4b55cccb46924b49aa311cd7fd2 11214674 kde extra amarok-dbg_1.4.10-0ubuntu3.1_i386.deb Original-Maintainer: Modestas Vainius