-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 22 Mar 2021 16:51:15 +0000 Source: libmediainfo Binary: libmediainfo-dev libmediainfo0v5 python-mediainfodll python3-mediainfodll libmediainfo-doc Architecture: source amd64 all Version: 0.7.91-1+deb9u1 Distribution: stretch-security Urgency: high Maintainer: Chow Loong Jin <hyperair@debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: libmediainfo-dev - library reading metadata from media files -- headers libmediainfo-doc - library for reading metadata from media files -- documentation libmediainfo0v5 - library for reading metadata from media files -- shared library python-mediainfodll - library for reading metadata from media files -- shared library python3-mediainfodll - library for reading metadata from media files -- shared library Closes: 927672 967073 985554 Changes: libmediainfo (0.7.91-1+deb9u1) stretch-security; urgency=high . * CVE-2020-26797: Fix a heap overflow in File_Gxf::ChooseParser_ChannelGrouping. (Closes: #985554) * CVE-2020-15395: Fix a stack-based buffer over-read vulnerability due to an off-by-one read in MpegPs parsing. (Closes: #967073) * CVE-2019-11372 & CVE-2019-11373: Fix a series of out-of-bounds read errors in File__Analyze::Get_L8, etc. (Closes: #927672) Checksums-Sha1: e4ede03d6db37c1f504e2aae90214e65064beb1a 2417 libmediainfo_0.7.91-1+deb9u1.dsc 95212e12ac80edb101ef380e48af4e11f38b339e 2224639 libmediainfo_0.7.91.orig.tar.gz adb88d154d58fc624ac65e5e7a118ad3d5cc99fb 10200 libmediainfo_0.7.91-1+deb9u1.debian.tar.xz b7e52c93500a4778cd548eb71496a6a82ac1a605 24570 libmediainfo-dev_0.7.91-1+deb9u1_amd64.deb fd95e64da8a2ce028ac8cbe9d8805e999701351c 106486 libmediainfo-doc_0.7.91-1+deb9u1_all.deb 11c602cd2dee7f9cb697d39e0a4f6d98cd291421 27935008 libmediainfo0v5-dbgsym_0.7.91-1+deb9u1_amd64.deb eeea24095e5deceb481ab06ccbca21451771bb32 1850298 libmediainfo0v5_0.7.91-1+deb9u1_amd64.deb c93986fd244c26641bcc23f7b9da5772112323c8 9665 libmediainfo_0.7.91-1+deb9u1_amd64.buildinfo fec65c98fe223581f7b3aded5bc6eba2d69f2003 14568 python-mediainfodll_0.7.91-1+deb9u1_all.deb 66f7fa974652ffde448d1aa831e73fa5cc41fbb8 14544 python3-mediainfodll_0.7.91-1+deb9u1_all.deb Checksums-Sha256: 2ad8344a0d1531b9f8c0867d87f55a08409db0ac98909ce694e64867b7a44a41 2417 libmediainfo_0.7.91-1+deb9u1.dsc 5388785fda3a783a9707e3574f808ab38af30e6314520bfd0bd93ca183dbc9ab 2224639 libmediainfo_0.7.91.orig.tar.gz cf1f0171a5dde227797811d1003dbd151ee9a76b224b7e3ce02472bb0da944f2 10200 libmediainfo_0.7.91-1+deb9u1.debian.tar.xz ce6c64e2a1e3bba8bac47320d9fb636637e8cd0689a02e8f743f8b62628d8c6d 24570 libmediainfo-dev_0.7.91-1+deb9u1_amd64.deb a036719ae41dcd951b1acd6013ecff968048b5f56371ae13f2b87ddba1720698 106486 libmediainfo-doc_0.7.91-1+deb9u1_all.deb b687cc02a8fe73c7d1b923a11bde494c911ff192988ca6b8f7b854878681f3fd 27935008 libmediainfo0v5-dbgsym_0.7.91-1+deb9u1_amd64.deb a543c20b943ae2dcca347519cd932e2eeb5e9b960c1887d96f112d39585149ed 1850298 libmediainfo0v5_0.7.91-1+deb9u1_amd64.deb edf6c73cc4338d5d7ff629e34deab31c4d6fc214ee6c5ea1fa38c8d9080736ba 9665 libmediainfo_0.7.91-1+deb9u1_amd64.buildinfo 06134756dee88020b5c526f95d2ddab17812a50b54fc456c0620482503bc0aa1 14568 python-mediainfodll_0.7.91-1+deb9u1_all.deb d740ae1415f64868667ab940815fdce51878ffa306d8aa46358c03d689f700ce 14544 python3-mediainfodll_0.7.91-1+deb9u1_all.deb Files: eb5187a15e75a6a8face0b1f51b2f504 2417 libs optional libmediainfo_0.7.91-1+deb9u1.dsc a2bae2ecfe7235a5bceb5ba700e25d4a 2224639 libs optional libmediainfo_0.7.91.orig.tar.gz d2103a4e56f7667b3245527e3c916493 10200 libs optional libmediainfo_0.7.91-1+deb9u1.debian.tar.xz 247e4f825c7e50e27396d28870b468f2 24570 libdevel optional libmediainfo-dev_0.7.91-1+deb9u1_amd64.deb 79aab4fcc02dd111b04233b8e4d2aacd 106486 doc optional libmediainfo-doc_0.7.91-1+deb9u1_all.deb 77dc66d1f776774dbd71bc386bfac066 27935008 debug extra libmediainfo0v5-dbgsym_0.7.91-1+deb9u1_amd64.deb 120715190bea292671ba9b3a1c06d080 1850298 libs optional libmediainfo0v5_0.7.91-1+deb9u1_amd64.deb 50de80a0f2eb46111b7c5802b4282c1f 9665 libs optional libmediainfo_0.7.91-1+deb9u1_amd64.buildinfo ef3a6a44c4b640bc59e94b54266a220a 14568 python optional python-mediainfodll_0.7.91-1+deb9u1_all.deb 00c98f4aa2e379f167e5b6a25c430f7b 14544 python optional python3-mediainfodll_0.7.91-1+deb9u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAmBZzYgACgkQHpU+J9Qx Hlh/EQ//ZrMiyfQRv0UeTBEmxrIq5HD8TXkE4gxo9wnEuDG+KvovqZhuxG0IiuOn HErOiK+5fl47xYp1oN6aHn2wFuVTNK5QL9szOzGq3l/l2VcKO57N5HFah485yKl1 sUh44BucTHmcM83i5lb9DDzB5R8tGnuQod9Xm1tFYr+oaZ0rxUrEHGIjq/gcLHrb vn+nFE3ffpk0C3bStMtDjX+ZwXhKCHHGXdoWkDttRYDA0aMZTDosjR5pmgURcJ67 odCo4gNED+5OtWVMAUjUElDgN5lGccLAzKYXJGcZ8Xqxg2kvIHsdboVYIa6fLQBo X+hEwrIC+02syYa9bAnRZaDAlPIFbFd4qR55WQOZGPmGjlM80jwGZS7j9LDMm1Sm Qx8Poji/9Vp+JTTRlqwyquK+7mFcQy+TWWBPl7greG0if/N1mlaHfepCcVYjOhb4 OLdyB/NAxa6Oe942aZAIDJ8DWg7gC2+U5HYBdqNITzZTtc/IxUvvm5JCuGfTtEm8 itI1kA7XY1ap3/mTJWtFR0/HHwrSRi/AbgAculp6OF8K6lqNYaJrYfAqPNO61zhh QFlMZdhGB+fVy4RLV5IBAt7e+N1DcnOV4ecxBXrFYRCHSVWbJ8XayApU9DW4owJg UOAM+UnOCU8XQtOtikiQjSDqrOET3j6e5Xvk2Dp8x4KKy5Q+CJM= =fPuQ -----END PGP SIGNATURE-----