Bug#780160: CVE-2014-9639

2016-09-24 Thread Petter Reinholdtsen
[Petter Reinholdtsen] > Its author said it is being reviewed for inclusion in a new release. I was just told by mark4o on #xiph that the fix is included in the upstream master branch but not yet in an official release. The upstream commit is said to be

Bug#780160: CVE-2014-9639

2016-05-26 Thread Petter Reinholdtsen
[Moritz Mühlenhoff] >> CVE-2014-9638 and CVE-2014-9639 for vorbis-tools also affect opus-tools, >> please see https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=776086 >> for details and reproducers. > > The jessie release is coming closer; did you hear back from upstream? I've been told that the

Bug#780160: CVE-2014-9639

2015-04-02 Thread Moritz Mühlenhoff
On Mon, Mar 09, 2015 at 11:08:57PM +0100, Moritz Muehlenhoff wrote: Package: opus-tools Version: 0.1.9-1 Severity: important Tags: security Hi, CVE-2014-9638 and CVE-2014-9639 for vorbis-tools also affect opus-tools, please see https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=776086 for

Bug#780160: CVE-2014-9639

2015-03-09 Thread Moritz Muehlenhoff
Package: opus-tools Version: 0.1.9-1 Severity: important Tags: security Hi, CVE-2014-9638 and CVE-2014-9639 for vorbis-tools also affect opus-tools, please see https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=776086 for details and reproducers. Cheers, Moritz -- To UNSUBSCRIBE, email