Format: 1.7 Date: Thu, 12 Mar 2009 11:16:08 -0400 Source: amarok Binary: amarok amarok-xine amarok-engines Architecture: ia64_translations ia64 Version: 2:1.4.7-0ubuntu3.2 Distribution: gutsy Urgency: low Maintainer: Ubuntu/ia64 Build Daemon Changed-By: Marc Deslauriers Description: amarok - versatile and easy to use audio player for KDE amarok-engines - output engines for the Amarok audio player amarok-xine - xine engine for the Amarok audio player Launchpad-Bugs-Fixed: 318555 Changes: amarok (2:1.4.7-0ubuntu3.2) gutsy-security; urgency=low . * SECURITY UPDATE: Code execution via multiple integer overflows and array index errors in the metadata parser for audible files. (LP: #318555) - debian/patches/100_security_CVE-2009-0135-0136.patch: improve error handling and set a maximum tag size in amarok/src/metadata/audible/audibletag.cpp. - CVE-2009-0135 - CVE-2009-0136 Files: 38e2fad81839b42fd831ff6a9e184f2e 5272377 raw-translations - amarok_1.4.7-0ubuntu3.2_ia64_translations.tar.gz cb569a7a16db735c17e98d31be48509f 10907996 kde optional amarok_1.4.7-0ubuntu3.2_ia64.deb 8afdcd1607078e5df129046b3e5f12bf 882 kde optional amarok-engines_1.4.7-0ubuntu3.2_ia64.deb 9b3a2e895a856054b467b53add28d125 79840 kde optional amarok-xine_1.4.7-0ubuntu3.2_ia64.deb Original-Maintainer: Adeodato Simó