-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Apr 2019 19:17:06 +0200 Source: gpac Binary: gpac gpac-dbg gpac-modules-base libgpac3 libgpac-dbg libgpac-dev Architecture: source amd64 Version: 0.5.0+svn5324~dfsg1-1+deb8u3 Distribution: jessie-security Urgency: high Maintainer: Debian Multimedia Maintainers <pkg-multimedia-maintainers@lists.alioth.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: gpac - GPAC Project on Advanced Content - utilities gpac-dbg - GPAC Project on Advanced Content - debugging symbols gpac-modules-base - GPAC Project on Advanced Content - modules libgpac-dbg - GPAC Project on Advanced Content - debugging symbols for libgpac3 libgpac-dev - GPAC Project on Advanced Content - development files libgpac3 - GPAC Project on Advanced Content - shared libraries Changes: gpac (0.5.0+svn5324~dfsg1-1+deb8u3) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2019-11221 Fix buffer overflow issue when using vsprintf(). * CVE-2019-11222 Fix buffer overflow when using the crypt feature with a crafted file. Checksums-Sha1: 2991bb5f223267d44971fcf37a4538c0ce40082e 2935 gpac_0.5.0+svn5324~dfsg1-1+deb8u3.dsc 15231e16ae8d154f9ec9ee8379289712412af26a 4677040 gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 e79682a42396376b703c6fb44edd32761bbb29d6 33912 gpac_0.5.0+svn5324~dfsg1-1+deb8u3.debian.tar.xz 117e8c3b2a540e47f535804be07b001f669e5acf 244786 gpac_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 565f6dfc2c484aee2fefa1c84591bb795a86984f 1284438 gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 81d8d96ff9483e83b1759b2dc1e19531c141d744 234064 gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 4458153e4a189c9c6da3837cef60f84e12b25420 1484332 libgpac3_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb d6120800c56acf45f7bcf206d52564dd996e55ba 4835796 libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 0110eeddf09ec7075aa120a84ee468ffd9a1e309 1984702 libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb Checksums-Sha256: 0e8fc4488af9423b725e8a7715b3b4efe1111da27c4df0bc65fbfe47a164bea1 2935 gpac_0.5.0+svn5324~dfsg1-1+deb8u3.dsc 1f9e01978b2f9dafd94a0796f951a6b5cddcd351593453ad71a344b2c2ca9569 4677040 gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 f2cbed0a4e8ba958406886d7546f27868040de2ec80a118437be41fcd07effab 33912 gpac_0.5.0+svn5324~dfsg1-1+deb8u3.debian.tar.xz a747bd82f0f9802d81ca70bf87df9d9a340d10d15db4e2b5e155410119130cf0 244786 gpac_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 729874bd360a0ff24f223b442fc31a2d099b82d9290e6b0e63da49f3cbf8f751 1284438 gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb dd314af41bfbf58db3a22b9f4bf382e30f3f8c67155cf1e90ddbb01cd6dee8f3 234064 gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 51ffc34bcb6769291dc8d1e82cc4b4804e8ba7bf394b1c4308b61c4a21fe5221 1484332 libgpac3_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb b1d2190699d8df104a23bf1bdcba192eee62e41c39a84e60297abb102366412f 4835796 libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb df43c39ee866582d728ac68b2dfb14864d8a6da239b840d9b38b28e201f95b6e 1984702 libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb Files: 81cb1dda7a0979ca1ddd94f3b31288f6 2935 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u3.dsc 828bde94660792841a695c2d737d4188 4677040 graphics optional gpac_0.5.0+svn5324~dfsg1.orig.tar.bz2 85c6825544e90c00525af0fb0be2b157 33912 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u3.debian.tar.xz ce37f51caf497ecd45e25fbc232a300e 244786 graphics optional gpac_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb a9051094895aaf775d1900a94c7a4ca4 1284438 debug extra gpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 0b1c3275ce48adfa1df2123a7ff18343 234064 graphics optional gpac-modules-base_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb da1d7686a2793e4f966b77bc4fdc470d 1484332 libs optional libgpac3_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb d50e005304216654287c09ed5813bc62 4835796 debug extra libgpac-dbg_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb 7cb0b282c2ff343c948542dc6184218e 1984702 libdevel optional libgpac-dev_0.5.0+svn5324~dfsg1-1+deb8u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAlzB8ENfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR8nJD/4rrgVe+RPa+2yxGL+WFyT6oNl7NAa6 guFqVPFkgZoksAQNRaSe9aogBewF7AaxM7N81GSRQAR9qs6zmPrzvBUf7ULVB1bq 8ya3RP0N8H8D9pVuR3vaeMsSQIBhSr9gMhPl5aS/yv+Qu5Fu1lOVTK3flLZRsK9M qN63uKCjccvC+j/ELfj+GzYME2xkhm1ddM35iwmlNH31ZsD1HeT4FsPhOIeIBRo6 h5FIueMmw8NQC+nFZFtmnBLE9vNuzgidJrKeh81w+5wY+ArkeFC0cVHIBGACqj1S Af/CJtw+aj6P9EjCYx73d6C5c/ll2obUQapNmLiZmRDxJy8jJn8nkGIex1dUaK6a 8kAYXaX1YgozYKPoliwCwrCmC5wPX9wmDW6R09uTvarutnICMsCxENAtgpADTbGM TbEWpjGOVXyx9TeoPDKgee3687t9a36W8UcUlyfCSIBQKm7EnEk6Bj0IsjC+Kfqn P1PRHL76UrTzXeyQvxYJTfQ38yEYEyx9K2o89JWaf1Lp/ySY1PJPqMQzrph0NW/l QQsUAYxmEDHPLzD8fGE/Ode4jFsjam/AwvyO0njM2PlwINIygVgq0kNs11g78nNQ F6Lj9gv9RndQ+wxnl0wlSNS01muxq6EF5UmULm6XW0sTiNeKpcYIYR2tigXZfFfq wkb7DDHhq6KhUA== =66kL -----END PGP SIGNATURE-----