Accepted libav 6:11.12-1~deb8u6 (source all amd64) into oldstable

2019-03-30 Thread Mike Gabriel
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Format: 1.8
Date: Sat, 30 Mar 2019 21:44:13 +0100
Source: libav
Binary: libav-tools libav-dbg libav-doc libavutil54 libavcodec56 libavdevice55 
libavformat56 libavfilter5 libswscale3 libavutil-dev libavcodec-dev 
libavdevice-dev libavformat-dev libavfilter-dev libswscale-dev 
libavresample-dev libavresample2 libavcodec-extra-56 libavcodec-extra
Architecture: source all amd64
Version: 6:11.12-1~deb8u6
Distribution: jessie-security
Urgency: medium
Maintainer: Debian Multimedia Maintainers 

Changed-By: Mike Gabriel 
Description:
 libav-dbg  - Debug symbols for Libav related packages
 libav-doc  - Documentation of the Libav API
 libav-tools - Multimedia player, encoder and transcoder
 libavcodec-dev - Development files for libavcodec
 libavcodec-extra - Libav codec library (additional codecs meta-package)
 libavcodec-extra-56 - Libav codec library (additional codecs)
 libavcodec56 - Libav codec library
 libavdevice-dev - Development files for libavdevice
 libavdevice55 - Libav device handling library
 libavfilter-dev - Development files for libavfilter
 libavfilter5 - Libav video filtering library
 libavformat-dev - Development files for libavformat
 libavformat56 - Libav file format library
 libavresample-dev - Development files for libavresample
 libavresample2 - Libav audio resampling library
 libavutil-dev - Development files for libavutil
 libavutil54 - Libav utility library
 libswscale-dev - Development files for libswscale
 libswscale3 - Libav video scaling library
Changes:
 libav (6:11.12-1~deb8u6) jessie-security; urgency=medium
 .
   * Non-maintainer upload by the LTS team.
   * CVE-2018-1999012: avformat/pva: Check for EOF before retrying in
 read_part_of_packet().
   * CVE-2015-1872: avcodec/mjpegdec: Check number of components for
 JPEG-LS.
   * CVE-2018-6392: avfilter/vf_transpose: Fix out of array access (including
 later regression fix with packed pixel formats).
   * CVE-2017-14058: avformat/hls: Fix DoS due to infinite loop.
   * CVE-2017-1000460: h264dec: handle zero-sized NAL units in
 get_last_needed_nal().
Checksums-Sha1:
 e2754f13a8f99424278fdcb45057dd810c1b80ee 4023 libav_11.12-1~deb8u6.dsc
 95bdcd2cf73cfe4fa1f6b748c0e9ff620f9b9381 73548 
libav_11.12-1~deb8u6.debian.tar.xz
 2438863b19aec976260b8f9e863e7cef35f8da16 18444200 
libav-doc_11.12-1~deb8u6_all.deb
 0271df5dccd8cd048ce67808d021a339e136bd0c 66790 
libavcodec-extra_11.12-1~deb8u6_all.deb
 419afc92c79e2a17f0b82de0607a5676f84d7399 474372 
libav-tools_11.12-1~deb8u6_amd64.deb
 a73ecc4f43eaaaec4a5780e3ec55a2fb212b5f13 21597980 
libav-dbg_11.12-1~deb8u6_amd64.deb
 b3e8bd83deab4cece17dc35646ef14a1cf4fd21c 131774 
libavutil54_11.12-1~deb8u6_amd64.deb
 b8f2ded43af4e8f32556ea8713bfa7982d39efdd 3110668 
libavcodec56_11.12-1~deb8u6_amd64.deb
 3b91f952c0cd7390131f260a5d8071defc728ff6 91674 
libavdevice55_11.12-1~deb8u6_amd64.deb
 851c691e81eef70c8fd159f4b80269380212f1e2 586758 
libavformat56_11.12-1~deb8u6_amd64.deb
 7fcdce7fa979522250b1b07d7ec25dcddf5ee2ea 172912 
libavfilter5_11.12-1~deb8u6_amd64.deb
 b8082879e442a08b4604eb034d6b932aa3af0f75 145258 
libswscale3_11.12-1~deb8u6_amd64.deb
 2bc4d75bc931ec0c4a912fb11d932e41a33163ed 193894 
libavutil-dev_11.12-1~deb8u6_amd64.deb
 5dfd3dfaf7f59cd611f08bba56141392797cf25c 3433186 
libavcodec-dev_11.12-1~deb8u6_amd64.deb
 8022656e2a6701f4b3da026dce1ec7d6fcb39d0b 94712 
libavdevice-dev_11.12-1~deb8u6_amd64.deb
 56061fa959bf5b6d9f361b0bbed45e769c0d20f5 692178 
libavformat-dev_11.12-1~deb8u6_amd64.deb
 f832a4a7e8665bb172a9dd69fb51318ba6a22d3c 204076 
libavfilter-dev_11.12-1~deb8u6_amd64.deb
 e00702d2ed9e15f0b8aa44ef87a9839ef2b3973a 158098 
libswscale-dev_11.12-1~deb8u6_amd64.deb
 2558206993add9e1a5fd14b336a287bd01619062 113112 
libavresample-dev_11.12-1~deb8u6_amd64.deb
 ec1ec97ff31a06533effec7c4a2cc827b2292e4d 104194 
libavresample2_11.12-1~deb8u6_amd64.deb
 883ff18f729099420794f21a8e4d492f11335df7 3114012 
libavcodec-extra-56_11.12-1~deb8u6_amd64.deb
Checksums-Sha256:
 56e54ef746521b91c6501390626161a0c31d63ec227753e7b09cc4960d7424f5 4023 
libav_11.12-1~deb8u6.dsc
 a1b21bd8192b804141e0786e730e48388420672dda70db54db423f6e4cb7f978 73548 
libav_11.12-1~deb8u6.debian.tar.xz
 8a9561f798a34213754f5c45ffe9fa7a305d2f925d672e41090a7e48951faccf 18444200 
libav-doc_11.12-1~deb8u6_all.deb
 7df64c66ab5b17518374a5f7c593a945c0565479388de0a85df87fbabaa383ef 66790 
libavcodec-extra_11.12-1~deb8u6_all.deb
 4a32ad9aeb84bdeb0235fb490746a2788c90c7448ce07bee39d75d207ed2b5fa 474372 
libav-tools_11.12-1~deb8u6_amd64.deb
 5bdf438d2b328cbe6f182bef1bd2dac80f7b4153630315e6876a08749008c537 21597980 
libav-dbg_11.12-1~deb8u6_amd64.deb
 5884cdfd2498776292484a7af680e8cfd60ae952dfa7c1c3e9e74679e2a931c9 131774 
libavutil54_11.12-1~deb8u6_amd64.deb
 14acdfd56b3571aba5ab1bce4d0a8f949714fcecc6544517f7c5b1fcd7476152 3110668 
libavcodec56_11.12-1~deb8u6_amd64.deb
 59ccd4e2436ec12b36063ad6bc8bef727a65386f5219f3f6e5c610752bf9f96b 91674 
libavdevice55_11.12-1~deb8u6_amd64.deb
 

Accepted gpsd 3.11-3+deb8u1 (source amd64) into oldstable

2019-03-30 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Sat, 30 Mar 2019 14:56:55 +0100
Source: gpsd
Binary: gpsd gpsd-dbg gpsd-clients python-gps libgps21 libgps-dev libqgpsmm21 
libqgpsmm-dev
Architecture: source amd64
Version: 3.11-3+deb8u1
Distribution: jessie-security
Urgency: high
Maintainer: Bernd Zeimetz 
Changed-By: Markus Koschany 
Description:
 gpsd   - Global Positioning System - daemon
 gpsd-clients - Global Positioning System - clients
 gpsd-dbg   - Global Positioning System - debugging symbols
 libgps-dev - Global Positioning System - development files
 libgps21   - Global Positioning System - library
 libqgpsmm-dev - Global Positioning System - Qt wrapper for libgps (development)
 libqgpsmm21 - Global Positioning System - Qt wrapper for libgps
 python-gps - Global Positioning System - Python libraries
Changes:
 gpsd (3.11-3+deb8u1) jessie-security; urgency=high
 .
   * Non-maintainer upload by the LTS team.
   * Fix CVE-2018-17937:
 A security vulnerability was discovered in gpsd, the Global Positioning
 System daemon. A stack-based buffer overflow may allow remote attackers to
 execute arbitrary code via traffic on port 2947/TCP or crafted JSON inputs.
Checksums-Sha1:
 8a0b7fc0f860118ae196cf6745bb63bd3c21c43c 2714 gpsd_3.11-3+deb8u1.dsc
 9ba8a9bcf55f6d82b839cbddf3d9be64fdbfd06a 1579600 gpsd_3.11.orig.tar.gz
 f2733287b3cb384d4f191ccc04d46773b734706f 33080 gpsd_3.11-3+deb8u1.debian.tar.xz
 53d80c765a8072f76a2649c9cedde52195304f1a 94938 gpsd_3.11-3+deb8u1_amd64.deb
 1870f63d1e40675603652934e22c7ef13819a5ca 1335392 
gpsd-dbg_3.11-3+deb8u1_amd64.deb
 e564f0785724cb3a55a1da6afbef76d85f375518 136754 
gpsd-clients_3.11-3+deb8u1_amd64.deb
 0c12ffbb863af36dd41ad9cd80bdea8b5882d617 96204 
python-gps_3.11-3+deb8u1_amd64.deb
 66b5b99de0791f6315ac129aa9b1a51bfeaed3ff 220726 
libgps21_3.11-3+deb8u1_amd64.deb
 226a7be64a51daecbe629c8162fd64a8c3cd2f34 132298 
libgps-dev_3.11-3+deb8u1_amd64.deb
 1e49b5fd7ce054c1c5f110a54be2ba29d244bd6b 91948 
libqgpsmm21_3.11-3+deb8u1_amd64.deb
 3fbbc14f56ad101625cfc5cb10c1960596275afb 43778 
libqgpsmm-dev_3.11-3+deb8u1_amd64.deb
Checksums-Sha256:
 5f4ade5132e919e4030ddfc14e24c5c4ffb06ac447f84ef7febe9299ee328478 2714 
gpsd_3.11-3+deb8u1.dsc
 ed66c6b6b1e2b4951de2c0b2399c22f77fe9f5927ef6b948dd8eb023ff53b7ee 1579600 
gpsd_3.11.orig.tar.gz
 a615c97586ba6278eccf6ab2ccb20e7958fb05b7a666efc51e4288403d2453d1 33080 
gpsd_3.11-3+deb8u1.debian.tar.xz
 a555fe24c3a60a1feecba3b21457b08d3367a779c3565903a2a71402745ed574 94938 
gpsd_3.11-3+deb8u1_amd64.deb
 4d6781631d660ed5bca4cd171b18e2de83f16a13df55fb6bb8426a9bf6ed4b16 1335392 
gpsd-dbg_3.11-3+deb8u1_amd64.deb
 162f4a114519b6d02eafdc984bb70bb5497b20338cedb44909494c549301f734 136754 
gpsd-clients_3.11-3+deb8u1_amd64.deb
 7b7369d1be850274560bc044b4841682de587732878fff0bd7eaa638c0be8cf2 96204 
python-gps_3.11-3+deb8u1_amd64.deb
 f8a93798604688f65ecd56e4c7a43a20221c543dc1612ef38b75bcef08b9aa1b 220726 
libgps21_3.11-3+deb8u1_amd64.deb
 3ab97ed2e6241a3fda64d7cad45c2b676503590abcd2d9914874d9539119e627 132298 
libgps-dev_3.11-3+deb8u1_amd64.deb
 a0bdf0282a5c3de0315e92d31dcc6e058e182a48017b2bbdb1615db230a93e75 91948 
libqgpsmm21_3.11-3+deb8u1_amd64.deb
 a0f97a685346bc4a58d4d0bce23183a37b1ad374a6b00852b4481deda8f17da0 43778 
libqgpsmm-dev_3.11-3+deb8u1_amd64.deb
Files:
 bc85481428323758c89c4a46b42516a1 2714 misc optional gpsd_3.11-3+deb8u1.dsc
 ba28369992886fccb85ce560e4727e20 1579600 misc optional gpsd_3.11.orig.tar.gz
 0ac646cd42accb1de7ab727c871ecccb 33080 misc optional 
gpsd_3.11-3+deb8u1.debian.tar.xz
 88de64a551b68b0b2da4238067aeb335 94938 misc optional 
gpsd_3.11-3+deb8u1_amd64.deb
 470fe4c2c9ad222de12a9160e3e0fd16 1335392 debug extra 
gpsd-dbg_3.11-3+deb8u1_amd64.deb
 ba75d8e59f6d4af6dff43694502e0ab1 136754 misc optional 
gpsd-clients_3.11-3+deb8u1_amd64.deb
 5a101620728d73fb96297870ac9d54b5 96204 python optional 
python-gps_3.11-3+deb8u1_amd64.deb
 0cfbf41864ef6e9717b45dae7c1e1bfa 220726 libs optional 
libgps21_3.11-3+deb8u1_amd64.deb
 848deca5397bcf9d51ccbeed3c733fed 132298 libdevel optional 
libgps-dev_3.11-3+deb8u1_amd64.deb
 59a0e0fdd8f10a47e951a0a1dac70712 91948 libs optional 
libqgpsmm21_3.11-3+deb8u1_amd64.deb
 583d56c7923a08d85b25c174c4a2b1ae 43778 libdevel optional 
libqgpsmm-dev_3.11-3+deb8u1_amd64.deb

-BEGIN PGP SIGNATURE-
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