Your message dated Sat, 17 Feb 2007 12:10:32 +0000
with message-id <[EMAIL PROTECTED]>
and subject line Bug#358026: fixed in vlc 0.8.1.svn20050314-1sarge2
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: vlc
Version: 0.8.1.svn20050314-1sarge1
Severity: normal
i was a little surprised to see the latest security update for vlc pull
in a dependency for libsmbclient. is this intentional?
live well,
vagrant
-- System Information:
Debian Release: 3.1
APT prefers stable
APT policy: (500, 'stable')
Architecture: i386 (i586)
Shell: /bin/sh linked to /bin/bash
Kernel: Linux 2.6.8-2-386
Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1)
Versions of packages vlc depends on:
ii aalib1 1.4p5-22 ascii art library
ii dbus-1 0.23.4-1 simple interprocess messaging syst
ii liba52-0.7.4 0.7.4-1 Library for decoding ATSC A/52 str
ii libc6 2.3.2.ds1-22 GNU C Library: Shared libraries an
ii libdvbpsi3 0.1.4-2 library for MPEG TS and DVB PSI ta
ii libdvdnav4 0.1.9-3 The DVD navigation library
ii libdvdread3 0.9.4-5 Simple foundation for reading DVDs
ii libflac6 1.1.1-5 Free Lossless Audio Codec - runtim
ii libfreetype6 2.1.7-2.4 FreeType 2 font engine, shared lib
ii libfribidi0 0.10.4-6 Free Implementation of the Unicode
ii libgcc1 1:3.4.3-13 GCC support library
ii libgcrypt11 1.2.0-11.1 LGPL Crypto library - runtime libr
ii libgnutls11 1.0.16-13.2 GNU TLS library - runtime library
ii libgpg-error0 1.0-1 library for common error values an
ii libhal0 0.4.7-3sarge1 Hardware Abstraction Layer - share
ii libid3tag0 0.15.1b-4.1 ID3 tag reading library from the M
ii liblircclient0 0.7.1pre2-2 LIRC client library
ii libmad0 0.15.1b-1.1 MPEG audio decoder library
ii libmodplug0 1:0.7-4 shared libraries for mod music bas
ii libmpeg2-4 0.4.0b-2 MPEG1 and MPEG2 video decoder libr
ii libncurses5 5.4-4 Shared libraries for terminal hand
ii libogg0 1.1.2-1 Ogg Bitstream Library
ii libpng12-0 1.2.8rel-1 PNG library - runtime
ii libsmbclient 3.0.14a-3sarge1 shared library that allows applica
ii libstdc++5 1:3.3.5-13 The GNU Standard C++ Library v3
ii libtar 1.2.11-2 C library for manipulating tar arc
ii libtheora0 0.0.0.alpha4-1.1 The Theora Video Compression Codec
ii libvorbis0a 1.1.0-1 The Vorbis General Audio Compressi
ii libvorbisenc2 1.1.0-1 The Vorbis General Audio Compressi
ii libx11-6 4.3.0.dfsg.1-14sarge1 X Window System protocol client li
ii libxext6 4.3.0.dfsg.1-14sarge1 X Window System miscellaneous exte
ii libxml2 2.6.16-7 GNOME XML library
ii libxosd2 2.2.14-1.1 X On-Screen Display library - runt
ii libxv1 4.3.0.dfsg.1-14sarge1 X Window System video extension li
ii slang1 1.4.9dbs-8 The S-Lang programming library - r
ii ttf-freefont 20031008-1.1 Freefont Serif, Sans and Mono True
ii wxvlc 0.8.1.svn20050314-1sarge1 wxWindows frontend for VLC
ii xlibmesa-gl [l 4.3.0.dfsg.1-14sarge1 Mesa 3D graphics library [XFree86]
ii xlibmesa-glu [ 4.3.0.dfsg.1-14sarge1 Mesa OpenGL utility library [XFree
ii xlibs 4.3.0.dfsg.1-14sarge1 X Keyboard Extension (XKB) configu
ii zlib1g 1:1.2.2-4.sarge.2 compression library - runtime
Versions of packages vlc recommends:
pn ttf-thryomanes <none> (no description available)
pn videolan-doc <none> (no description available)
-- no debconf information
--- End Message ---
--- Begin Message ---
Source: vlc
Source-Version: 0.8.1.svn20050314-1sarge2
We believe that the bug you reported is fixed in the latest version of
vlc, which is due to be installed in the Debian FTP archive:
gnome-vlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/gnome-vlc_0.8.1.svn20050314-1sarge2_i386.deb
gvlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/gvlc_0.8.1.svn20050314-1sarge2_i386.deb
kvlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/kvlc_0.8.1.svn20050314-1sarge2_i386.deb
libvlc0-dev_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/libvlc0-dev_0.8.1.svn20050314-1sarge2_i386.deb
mozilla-plugin-vlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/mozilla-plugin-vlc_0.8.1.svn20050314-1sarge2_i386.deb
qvlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/qvlc_0.8.1.svn20050314-1sarge2_i386.deb
vlc-alsa_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-alsa_0.8.1.svn20050314-1sarge2_i386.deb
vlc-esd_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-esd_0.8.1.svn20050314-1sarge2_i386.deb
vlc-ggi_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-ggi_0.8.1.svn20050314-1sarge2_i386.deb
vlc-glide_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-glide_0.8.1.svn20050314-1sarge2_i386.deb
vlc-gnome_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-gnome_0.8.1.svn20050314-1sarge2_i386.deb
vlc-gtk_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-gtk_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-alsa_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-alsa_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-arts_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-arts_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-esd_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-esd_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-ggi_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-ggi_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-glide_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-glide_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-sdl_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-sdl_0.8.1.svn20050314-1sarge2_i386.deb
vlc-plugin-svgalib_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-plugin-svgalib_0.8.1.svn20050314-1sarge2_i386.deb
vlc-qt_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-qt_0.8.1.svn20050314-1sarge2_i386.deb
vlc-sdl_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc-sdl_0.8.1.svn20050314-1sarge2_i386.deb
vlc_0.8.1.svn20050314-1sarge2.diff.gz
to pool/main/v/vlc/vlc_0.8.1.svn20050314-1sarge2.diff.gz
vlc_0.8.1.svn20050314-1sarge2.dsc
to pool/main/v/vlc/vlc_0.8.1.svn20050314-1sarge2.dsc
vlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/vlc_0.8.1.svn20050314-1sarge2_i386.deb
wxvlc_0.8.1.svn20050314-1sarge2_i386.deb
to pool/main/v/vlc/wxvlc_0.8.1.svn20050314-1sarge2_i386.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Sam Hocevar (Debian packages) <[EMAIL PROTECTED]> (supplier of updated vlc
package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 15 Jan 2007 13:06:55 +0100
Source: vlc
Binary: vlc-esd wxvlc vlc-plugin-sdl kvlc gvlc vlc-plugin-alsa gnome-vlc vlc-qt
vlc-ggi mozilla-plugin-vlc vlc vlc-gnome vlc-gtk vlc-sdl vlc-alsa
vlc-plugin-svgalib vlc-glide vlc-plugin-ggi qvlc vlc-plugin-esd
vlc-plugin-glide vlc-plugin-arts libvlc0-dev
Architecture: source i386
Version: 0.8.1.svn20050314-1sarge2
Distribution: stable-security
Urgency: high
Maintainer: Sam Hocevar (Debian packages) <[EMAIL PROTECTED]>
Changed-By: Sam Hocevar (Debian packages) <[EMAIL PROTECTED]>
Description:
gnome-vlc - GNOME frontend for VLC (dummy legacy package)
gvlc - GTK+ frontend for VLC (dummy legacy package)
kvlc - KDE frontend for VLC (dummy legacy package)
libvlc0-dev - development files for VLC
mozilla-plugin-vlc - multimedia plugin for Mozilla based on VLC
qvlc - Qt frontend for VLC (dummy legacy package)
vlc - multimedia player for all audio and video formats
vlc-alsa - ALSA audio output plugin for VLC (dummy legacy package)
vlc-esd - Esound audio output plugin for VLC (dummy legacy package)
vlc-ggi - GGI video output plugin for VLC (dummy legacy package)
vlc-glide - Glide video output plugin for VLC (dummy legacy package)
vlc-gnome - GNOME frontend for VLC (dummy legacy package)
vlc-gtk - GTK+ frontend for VLC (dummy legacy package)
vlc-plugin-alsa - ALSA audio output plugin for VLC
vlc-plugin-arts - aRts audio output plugin for VLC
vlc-plugin-esd - Esound audio output plugin for VLC
vlc-plugin-ggi - GGI video output plugin for VLC
vlc-plugin-glide - Glide video output plugin for VLC
vlc-plugin-sdl - SDL video and audio output plugin for VLC
vlc-plugin-svgalib - SVGAlib video output plugin for VLC
vlc-qt - Qt frontend for VLC (dummy legacy package)
vlc-sdl - SDL video and audio output plugin for VLC (dummy legacy package)
wxvlc - wxWindows frontend for VLC
Closes: 358026 405425
Changes:
vlc (0.8.1.svn20050314-1sarge2) stable-security; urgency=high
.
* modules/access/cdda/access.c modules/access/vcdx/access.c:
+ Fix format string vulnerabilities (CVE-2007-0017) (Closes: #405425).
* debian/control:
+ Build-conflict against libsmbclient-dev to avoid accidentally
depending on Samba libraries (Closes: #358026).
Files:
a8b1c32a0625845da8b035402064351b 1916 graphics optional
vlc_0.8.1.svn20050314-1sarge2.dsc
c1573565b4f6c5f5bc4fb0da0ef82c4e 1419 graphics optional
vlc_0.8.1.svn20050314-1sarge2.diff.gz
25303969db6cc0fbd49213be430df851 5248346 graphics optional
vlc_0.8.1.svn20050314-1sarge2_i386.deb
d543d6e9a80452fa3dde68aed95fba05 736194 libdevel optional
libvlc0-dev_0.8.1.svn20050314-1sarge2_i386.deb
631a977a858357c6f33cdd65421d930d 1264 oldlibs optional
gnome-vlc_0.8.1.svn20050314-1sarge2_i386.deb
876395121224f2dde78efbe4d3a425cd 1272 oldlibs optional
gvlc_0.8.1.svn20050314-1sarge2_i386.deb
e74395e32b380ff0979bb93c743ecb41 4666 graphics optional
vlc-plugin-esd_0.8.1.svn20050314-1sarge2_i386.deb
2bd7aba839974f5ec5b1c5eed3225898 10474 graphics optional
vlc-plugin-alsa_0.8.1.svn20050314-1sarge2_i386.deb
ee701ea8bac97ed56be2814487be9793 10588 graphics optional
vlc-plugin-sdl_0.8.1.svn20050314-1sarge2_i386.deb
3187af8067fcb58fcf04ee5cb6cd4a35 6390 graphics optional
vlc-plugin-ggi_0.8.1.svn20050314-1sarge2_i386.deb
20ac7a7d0058973532a507bba0f58b55 4668 graphics optional
vlc-plugin-glide_0.8.1.svn20050314-1sarge2_i386.deb
9a5000ace56011a555a333097acdebb9 954 oldlibs optional
qvlc_0.8.1.svn20050314-1sarge2_i386.deb
9305542c6f92bba8159c925e22bc0d50 4424 graphics optional
vlc-plugin-arts_0.8.1.svn20050314-1sarge2_i386.deb
58fbafb3f71ccc9d9160acd4e94d25e2 582328 graphics optional
mozilla-plugin-vlc_0.8.1.svn20050314-1sarge2_i386.deb
38d79330ffd560b4070685e40356262c 974 oldlibs optional
kvlc_0.8.1.svn20050314-1sarge2_i386.deb
84514a7deb4f44cb93ea14ee48358e5b 4760 graphics optional
vlc-plugin-svgalib_0.8.1.svn20050314-1sarge2_i386.deb
8cbfa4c613219d31e15e13ec6f4e119b 302658 graphics optional
wxvlc_0.8.1.svn20050314-1sarge2_i386.deb
182b1775c69f3d754c29eca2204ddcb3 872 oldlibs optional
vlc-alsa_0.8.1.svn20050314-1sarge2_i386.deb
c7d04205aa4816c4ba97191d8e09e648 872 oldlibs optional
vlc-esd_0.8.1.svn20050314-1sarge2_i386.deb
5cfb1f247c297fa929c7cf781af2c63b 874 oldlibs optional
vlc-ggi_0.8.1.svn20050314-1sarge2_i386.deb
33fb31c2568f63d1adb9923c6f59c6bc 878 oldlibs optional
vlc-glide_0.8.1.svn20050314-1sarge2_i386.deb
1df3ade097295fa2ef607d05fb542ae4 872 oldlibs optional
vlc-gnome_0.8.1.svn20050314-1sarge2_i386.deb
995f69c9cae4f5b2306a077a81e27f03 864 oldlibs optional
vlc-gtk_0.8.1.svn20050314-1sarge2_i386.deb
1b6298ba6ca8f1c11005a89173162f7d 860 oldlibs optional
vlc-qt_0.8.1.svn20050314-1sarge2_i386.deb
30b7ceece36c56301704a431bc6138f0 878 oldlibs optional
vlc-sdl_0.8.1.svn20050314-1sarge2_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFFq5h4fPP1rylJn2ERAjj3AJ9ZEMfV1maJ4uX57lnuQKB2iDAosgCfaeas
X26xeXL5Ppvag+sSd02200U=
=zvYo
-----END PGP SIGNATURE-----
--- End Message ---