[SECURITY] [DLA 1582-1] liblivemedia security update

2018-11-20 Thread Hugo Lefeuvre
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: liblivemedia Version: 2014.01.13-1+deb8u1 CVE ID : CVE-2018-4013 A stack based buffer overflow vulnerability was found in liblivemedia, the LIVE555 RTSP server library. This issue might be leveraged by remote

[SECURITY] [DLA 1581-1] uriparser security update

2018-11-20 Thread Lucas Kanashiro
Package: uriparser Version: 0.8.0.1-2+deb8u1 CVE ID : CVE-2018-19198 CVE-2018-19199 CVE-2018-19200 Multiple vulnerabilities have been discovered in uriparser, an Uniform Resource Identifiers (URIs) parsing library. CVE-2018-19198 UriQuery.c allows an out-of-bounds

[SECURITY] [DLA 1579-1] openjpeg2 security update

2018-11-20 Thread Hugo Lefeuvre
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: openjpeg2 Version: 2.1.0-2+deb8u5 CVE ID : CVE-2017-17480 CVE-2018-18088 Multiple vulnerabilities have been discovered in openjpeg2, the open-source JPEG 2000 codec. CVE-2017-17480 Write stack buffer overflow