-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 27 Feb 2019 19:17:06 +0100 Source: gpac Binary: gpac gpac-dbg gpac-modules-base libgpac3 libgpac-dbg libgpac-dev Architecture: source amd64 Version: 0.5.0+svn5324~dfsg1-1+deb8u2 Distribution: jessie-security Urgency: high Maintainer: Debian Multimedia Maintainers <pkg-multimedia-maintain...@lists.alioth.debian.org> Changed-By: Thorsten Alteholz <deb...@alteholz.de> Description: gpac - GPAC Project on Advanced Content - utilities gpac-dbg - GPAC Project on Advanced Content - debugging symbols gpac-modules-base - GPAC Project on Advanced Content - modules libgpac-dbg - GPAC Project on Advanced Content - debugging symbols for libgpac3 libgpac-dev - GPAC Project on Advanced Content - development files libgpac3 - GPAC Project on Advanced Content - shared libraries Changes: gpac (0.5.0+svn5324~dfsg1-1+deb8u2) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2018-20763, CVE-2018-20762, CVE-2018-20761 CVE-2018-20760, CVE-2018-7752 Several buffer overflows have been detected in different functions. Checksums-Sha1: 42b0adb1b175976097d3af8a2e562664fbd8216b 2935 gpac_0.5.0+svn5324~dfsg1-1+deb8u2.dsc 15231e16ae8d154f9ec9ee8379289712412af26a 4677040 gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 79816741a87dd1ac0e7dbfa53e395f8ff7f84119 32360 gpac_0.5.0+svn5324~dfsg1-1+deb8u2.debian.tar.xz 3415507dcceff4c6a8bef22a19dc31a5032af7f9 245028 gpac_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 4bb45f1ec480ce1d8722cef9527105728fb50c1f 1285028 gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 4fc318793c85bb116ac868f993c43f7130aea31d 234196 gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 091d03f0f7886c71e4a6233c2b8295fec700ea3c 1483570 libgpac3_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 5517c637bd3db20f54a8828a17634ec9726e6d46 4836486 libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 2046919ddd7e8a8854bc122cc4b36f6e4b5d9e73 1985954 libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb Checksums-Sha256: 7e918539c8e20ef54774ad19265f626ffe3796c9e76940c61a503b6ed89a2126 2935 gpac_0.5.0+svn5324~dfsg1-1+deb8u2.dsc 1f9e01978b2f9dafd94a0796f951a6b5cddcd351593453ad71a344b2c2ca9569 4677040 gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 5ef38082a8027ad8fadbfd10a1dbcaabe651e1fcb9968accf2513784ca23d2c4 32360 gpac_0.5.0+svn5324~dfsg1-1+deb8u2.debian.tar.xz c7cf45749c4b9e13c388da6ccd466780c9fc52cc412b124ffa153a75c74b91b2 245028 gpac_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb e59b4d993eda3ba46f3b3ff7b4f8bbdc368f722b8bc006c1da517f858a6d9fbf 1285028 gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 1664805f14ecc65261c1fe52c408a6e06265562a89b37fb33520233a9543f7f6 234196 gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 5758c4c7bba20dae0b6aec4c9524d55941e868862e9a6cc8e112ad25502928e5 1483570 libgpac3_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 93fa7d160e61a11ad6fb04629b13060a61fb18327b08d38f9a876f897bfccc39 4836486 libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb a3acf3669c5c7b5b83e18a77bb114327cf3743d2062dee7ca6d6fe7a6bdf5caa 1985954 libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb Files: 15e196ed603ae0af3d22419d45e34db0 2935 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u2.dsc 828bde94660792841a695c2d737d4188 4677040 graphics optional gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 df83c387a271890092fbfe86f5be261a 32360 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u2.debian.tar.xz 4c92b31c37b09dcf501a298220386bb3 245028 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb da8ce626956ff258fdb847ba3a1acb83 1285028 debug extra gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 96cfafab86b3336a009e522f43543796 234196 graphics optional gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 760ebea8538082c141e215038222b6fe 1483570 libs optional libgpac3_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb b3e23dd4af644b76bd1113790028cb24 4836486 debug extra libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb 97363cec7e91f827c403615573ebd049 1985954 libdevel optional libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u2_amd64.deb
-----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAlx22y1fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR9ALEACsvVOj8j0IiEeYO9a9QiKDI+hhTruf ziId4rNLxRDGBOVsqQsIhV0XNy33JSHjt0eHbFKBs7cOpXp5aJBi1B+DDRlPsYJm P70TgDydA1+/HzsRp/oHnaFpc9JopN+S454lzGJqWK8Y62WZgirAQWoiE71bOT0z Sa4KEGjAewWZITzbAeTNVHuVGVcJ1VyzXZu7dfIstQNrqwBFBBQS9h5CzTnM3O9N W3NwSZkUpoUL0nQyQLWT3fatHk7mM/Mq7Ry/sCWHvBxLDL+yxayxSSje5nO111Vr hRTciE+OlwpzwaJRf8ReIqhrkrmUNVlDAkHX2TY3FBELFjU/6fQ5DOGA76eYu/EU JnWUTxirVFyy3YQNCjuw1TK2HV2QXRS7IkGWm+cnOowm4cmx7trVqHDR7Q4Y1xKd jqxG+HewzlC3SUfec5/F1Q5hxVi4L5KzfluYIQmbCRIr3STaD2FJu9ZEoqqF7QEB jKZ1ko1hU4TOzkWgWN4xZm8XYOfX7KKOHzCRUkiqYD6cXuOASZotAGyvlIfaQagl 1XNjl44lJkaSyKeyTTGa+ymNQ7g6pkK+H2wlUWyQ1bzBCoLeGJxDtn28XWJ3oO+3 cyN4sWrxK+0cuQviI5+irso76lqNuLx0cWL/nfBLTnUeCOdMqlWmrBbEGVIAjZYY n7uvxHz6qBhVtQ== =/0nM -----END PGP SIGNATURE-----