-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 20 Nov 2018 17:00:02 +0100 Source: liblivemedia Binary: liblivemedia-dev libbasicusageenvironment1 libgroupsock8 liblivemedia57 libusageenvironment3 livemedia-utils Architecture: source amd64 Version: 2016.11.28-1+deb9u1 Distribution: stretch-security Urgency: high Maintainer: Debian Multimedia Maintainers <pkg-multimedia-maintainers@lists.alioth.debian.org> Changed-By: Hugo Lefeuvre <hle@debian.org> Description: libbasicusageenvironment1 - multimedia RTSP streaming library (BasicUsageEnvironment class) libgroupsock8 - multimedia RTSP streaming library (network interfaces and sockets liblivemedia-dev - multimedia RTSP streaming library (development files) liblivemedia57 - multimedia RTSP streaming library libusageenvironment3 - multimedia RTSP streaming library (UsageEnvironment classes) livemedia-utils - multimedia RTSP streaming tools Changes: liblivemedia (2016.11.28-1+deb9u1) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2018-4013: stack-based buffer overflow in the HTTP packet-parsing functionality, potentially resulting in code execution. Checksums-Sha1: 8c09bf4327a3ca4d7390c537ab2430a6b65af1d5 2185 liblivemedia_2016.11.28-1+deb9u1.dsc 6df30a0c20c973e4f7f0dd1030a863fb6329cd7a 626781 liblivemedia_2016.11.28.orig.tar.gz b56fc55e622fb3afc81fc4c3b559c4debe65a10e 13500 liblivemedia_2016.11.28-1+deb9u1.debian.tar.xz 21c990a69bc6b3199e0a731e3f4276773b52fe89 41520 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u1_amd64.deb b8924dd61be1b9e2d41794fb5625d6a23baaad68 21694 libbasicusageenvironment1_2016.11.28-1+deb9u1_amd64.deb 4726cc8844d0a22144a6924dadf061dce4c9ac5d 63824 libgroupsock8-dbgsym_2016.11.28-1+deb9u1_amd64.deb 2110d6640e77b9335a57f6b44447923b3ef344d3 27268 libgroupsock8_2016.11.28-1+deb9u1_amd64.deb 55b49384e4355dee3222223e0df3689c155b5654 164526 liblivemedia-dev_2016.11.28-1+deb9u1_amd64.deb 87400bcb64856f6f929b38b5e6666f56711988f3 948812 liblivemedia57-dbgsym_2016.11.28-1+deb9u1_amd64.deb 0d9721e534149b06cb5a60c5899c3fd9ade8c200 309522 liblivemedia57_2016.11.28-1+deb9u1_amd64.deb 920fe6f0d6f4c62758ae41c09d98da6db5916f3a 8765 liblivemedia_2016.11.28-1+deb9u1_amd64.buildinfo b80fd31bcc8e9b94df645bcab879d33a2bcd6f61 9604 libusageenvironment3-dbgsym_2016.11.28-1+deb9u1_amd64.deb 346feb22a22998912aa8c29620ebd8d0978d61a7 12398 libusageenvironment3_2016.11.28-1+deb9u1_amd64.deb 0f3279cb2f73a21d5e6088e4dbbba30448cae6ad 277126 livemedia-utils-dbgsym_2016.11.28-1+deb9u1_amd64.deb ce30869d4d4a4276ca10831961cc33b259394fd7 71758 livemedia-utils_2016.11.28-1+deb9u1_amd64.deb Checksums-Sha256: eb53af43fafaf39127d3e7eefabdcbcccd9a1e8c3dbc8c62429e2057e6680fe0 2185 liblivemedia_2016.11.28-1+deb9u1.dsc 08b93a20bc302bed1da2f05621f37fda962dbfc272132afa6fa1058d222c238a 626781 liblivemedia_2016.11.28.orig.tar.gz d0e4f3cd9c710ea97fead4c2c68128845870102080664433ada44f342265b282 13500 liblivemedia_2016.11.28-1+deb9u1.debian.tar.xz cff6b489e90c99579eb6285444c3e5e28ba68ba6e0a316be62195d605f2e2a12 41520 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u1_amd64.deb 58259e2f823f26bce3e84c6b32f7e3205eb8af46fcd6a73c36b3df997ccf3ec4 21694 libbasicusageenvironment1_2016.11.28-1+deb9u1_amd64.deb 2b5234c784d62fe948892c7d1a89fe5f20fb3e6c9778c122580078dce40daaa5 63824 libgroupsock8-dbgsym_2016.11.28-1+deb9u1_amd64.deb 4547cd0a000298b3058507928530de3882f5c074da9f456c16f376168526cf95 27268 libgroupsock8_2016.11.28-1+deb9u1_amd64.deb 3aaed50394d6d80b41977340ebc3e74fa5749ec223b2337aad40ba8e7196b340 164526 liblivemedia-dev_2016.11.28-1+deb9u1_amd64.deb ad3df6f9a1355b172fbac41d3b59bc8d3e97faa3eb812c68adddd25f6ed27e32 948812 liblivemedia57-dbgsym_2016.11.28-1+deb9u1_amd64.deb 97e5f08d3f59ef45af55c2667d49c0c3c6b09ef83e18e7d1fbfd3fa58cf40ec2 309522 liblivemedia57_2016.11.28-1+deb9u1_amd64.deb c10cb30d38a126805980bd4f963edccd1739c2d9bed3e07f4c1df2e883bea419 8765 liblivemedia_2016.11.28-1+deb9u1_amd64.buildinfo 68300d13e022d1a3861d6eb340ab22f28adf63120f1c6701b0325f757d515d51 9604 libusageenvironment3-dbgsym_2016.11.28-1+deb9u1_amd64.deb 50982f08019d1c66aefabadafa6dfae33e8bf1d3d424fe04e3efa255eeac2e66 12398 libusageenvironment3_2016.11.28-1+deb9u1_amd64.deb 3257929d551a0aa1b9b447e206dedddccaa5fede78b920147ee7dd8b006deb2b 277126 livemedia-utils-dbgsym_2016.11.28-1+deb9u1_amd64.deb 8c2c05300e6061b8355b13beeb24cbcd993ccd7225a7e2d941256ca847227818 71758 livemedia-utils_2016.11.28-1+deb9u1_amd64.deb Files: 96dd2a6a25f49a69193f997349c51a82 2185 libs optional liblivemedia_2016.11.28-1+deb9u1.dsc 60dcc25f77364f40d630dbd6ab354ea0 626781 libs optional liblivemedia_2016.11.28.orig.tar.gz ecbddd28bd7ddea7b90bb77aef56abd7 13500 libs optional liblivemedia_2016.11.28-1+deb9u1.debian.tar.xz a9576f9afc1cacc795f61af5269384af 41520 debug extra libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u1_amd64.deb 3c6baef9adea9eae4e1b80ad29c37751 21694 libs optional libbasicusageenvironment1_2016.11.28-1+deb9u1_amd64.deb a68a6cd63be1fbd694602552c608ce31 63824 debug extra libgroupsock8-dbgsym_2016.11.28-1+deb9u1_amd64.deb 0a2093946f5b98f84e1b5a532a5461c4 27268 libs optional libgroupsock8_2016.11.28-1+deb9u1_amd64.deb eb7c8e266fa1673a38bad4b6a33305ed 164526 libdevel optional liblivemedia-dev_2016.11.28-1+deb9u1_amd64.deb aee69f1cdc12a6db3c0dd36a6500a8b3 948812 debug extra liblivemedia57-dbgsym_2016.11.28-1+deb9u1_amd64.deb 03852f4da56b1f177c6a53662cc878a1 309522 libs optional liblivemedia57_2016.11.28-1+deb9u1_amd64.deb 3e377a5a3c5143b1f1aecf7fade09401 8765 libs optional liblivemedia_2016.11.28-1+deb9u1_amd64.buildinfo 49e8431b072c4d071852db8de0b38550 9604 debug extra libusageenvironment3-dbgsym_2016.11.28-1+deb9u1_amd64.deb 2918a42b3903edc46047dd4d2f7d96f6 12398 libs optional libusageenvironment3_2016.11.28-1+deb9u1_amd64.deb 20a85556b92c17649676dd2bbac43b33 277126 debug extra livemedia-utils-dbgsym_2016.11.28-1+deb9u1_amd64.deb c05438a97651874ba066cb8662dda949 71758 net optional livemedia-utils_2016.11.28-1+deb9u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEUFZhdgIWqBhwqCvuZYVUZx9w0DQFAlv1D2oACgkQZYVUZx9w 0DSoKwf9Eoy02gdF83nCWqd+lgIlNb43slSxX7AVlazUYh37BB4W2vnXu5z2lXEU /hnrvaCftd4/1JjMaC4cyldHJLJLXglxv5ewSMRifbUQqBDjCUCNxX/kNI43ChX0 wgNOYou2Nz8e1cw4AUGR/zx2Am55vP+anaaUfAQyyLGYkOJ4N4lbue6599v3xh6p zhCyLHTlYizztIqYxlS1jFg3eSV1X2omg/c7m3KjOHzVrbEYSPLsIX3qDAoQPaha oVIQ/W/W1cWDEMP3hb+dCYe8AUmvmPth680CHGfm28Eylbij6LkEi47qcmoITZug n28/GcWcAsENmqJ6NB0k+myvDQbScg== =rjgP -----END PGP SIGNATURE-----