summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorsecurity tracker role <sectracker@debian.org>2017-02-18 21:10:13 +0000
committersecurity tracker role <sectracker@debian.org>2017-02-18 21:10:13 +0000
commitdcf067d1e48138ca9b186e5654646f19c3901131 (patch)
tree6b14453eda7468406ee3a646afc296c03f7b6ea7
parentde38b5a035b23d601ad7e21aab0259524b2098dc (diff)
automatic update
git-svn-id: svn+ssh://svn.debian.org/svn/secure-testing@49055 e39458fd-73e7-0310-bf30-c45bca0a0e42
-rw-r--r--data/CVE/2016.list1
-rw-r--r--data/CVE/2017.list7
2 files changed, 8 insertions, 0 deletions
diff --git a/data/CVE/2016.list b/data/CVE/2016.list
index 347058f834..6a2c620f38 100644
--- a/data/CVE/2016.list
+++ b/data/CVE/2016.list
@@ -98,6 +98,7 @@ CVE-2016-10199 (The qtdemux_tag_add_str_full function in gst/isomp4/qtdemux.c in
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=775451
CVE-2016-10198 (The gst_aac_parse_sink_setcaps function in ...)
+ {DLA-828-1}
- gst-plugins-good1.0 1.10.3-1 (low)
- gst-plugins-good0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
diff --git a/data/CVE/2017.list b/data/CVE/2017.list
index 72376a9a29..bb0eab8f1a 100644
--- a/data/CVE/2017.list
+++ b/data/CVE/2017.list
@@ -901,6 +901,7 @@ CVE-2017-5682
CVE-2017-5680
RESERVED
CVE-2017-5848 (The gst_ps_demux_parse_psm function in gst/mpegdemux/gstmpegdemux.c in ...)
+ {DLA-830-1}
- gst-plugins-bad1.0 <unfixed> (low)
- gst-plugins-bad0.10 <unfixed> (low)
[jessie] - gst-plugins-bad0.10 <no-dsa> (Minor issue)
@@ -908,12 +909,14 @@ CVE-2017-5848 (The gst_ps_demux_parse_psm function in gst/mpegdemux/gstmpegdemux
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777957
NOTE: Patch: https://bugzilla.gnome.org/show_bug.cgi?id=777957#c3
CVE-2017-5847 (The gst_asf_demux_process_ext_content_desc function in ...)
+ {DLA-829-1}
- gst-plugins-ugly1.0 <unfixed> (low)
- gst-plugins-ugly0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777955
NOTE: https://github.com/GStreamer/gst-plugins-ugly/commit/d21017b52a585f145e8d62781bcc1c5fefc7ee37
CVE-2017-5846 (The gst_asf_demux_process_ext_stream_props function in ...)
+ {DLA-829-1}
- gst-plugins-ugly1.0 1.10.3-1 (low)
- gst-plugins-ugly0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
@@ -924,11 +927,13 @@ CVE-2017-5845 (The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777532
CVE-2017-5844 (The gst_riff_create_audio_caps function in ...)
+ {DLA-827-1}
- gst-plugins-base1.0 1.10.3-1 (low)
- gst-plugins-base0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777525
CVE-2017-5843 (Multiple use-after-free vulnerabilities in the (1) ...)
+ {DLA-830-1}
- gst-plugins-bad1.0 1.10.3-1
- gst-plugins-bad0.10 <unfixed> (low)
[jessie] - gst-plugins-bad0.10 <no-dsa> (Minor issue)
@@ -945,6 +950,7 @@ CVE-2017-5841 (The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777500
CVE-2017-5840 (The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in ...)
+ {DLA-828-1}
- gst-plugins-good1.0 1.10.3-1 (low)
- gst-plugins-good0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
@@ -960,6 +966,7 @@ CVE-2017-5838 (The gst_date_time_new_from_iso8601_string function in ...)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=777263
CVE-2017-5837 (The gst_riff_create_audio_caps function in ...)
+ {DLA-827-1}
- gst-plugins-base1.0 1.10.3-1 (low)
- gst-plugins-base0.10 <unfixed> (low)
NOTE: http://www.openwall.com/lists/oss-security/2017/02/01/7

© 2014-2024 Faster IT GmbH | imprint | privacy policy