-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 01 Jun 2015 11:12:42 +0200 Source: libav Binary: libav-tools libav-dbg libav-doc libavutil54 libavcodec56 libavdevice55 libavformat56 libavfilter5 libswscale3 libavutil-dev libavcodec-dev libavdevice-dev libavformat-dev libavfilter-dev libswscale-dev libavresample-dev libavresample2 libavcodec-extra-56 libavcodec-extra Architecture: source all Version: 6:11.4-1~deb8u1 Distribution: jessie-security Urgency: high Maintainer: Debian Multimedia Maintainers <pkg-multimedia-maintainers@lists.alioth.debian.org> Changed-By: Sebastian Ramacher <sramacher@debian.org> Description: libav-dbg - Debug symbols for Libav related packages libav-doc - Documentation of the Libav API libav-tools - Multimedia player, encoder and transcoder libavcodec-dev - Development files for libavcodec libavcodec-extra - Libav codec library (additional codecs meta-package) libavcodec-extra-56 - Libav codec library (additional codecs) libavcodec56 - Libav codec library libavdevice-dev - Development files for libavdevice libavdevice55 - Libav device handling library libavfilter-dev - Development files for libavfilter libavfilter5 - Libav video filtering library libavformat-dev - Development files for libavformat libavformat56 - Libav file format library libavresample-dev - Development files for libavresample libavresample2 - Libav audio resampling library libavutil-dev - Development files for libavutil libavutil54 - Libav utility library libswscale-dev - Development files for libswscale libswscale3 - Libav video scaling library Changes: libav (6:11.4-1~deb8u1) jessie-security; urgency=high . [ Sebastian Ramacher ] * New upstream release fixing multiple security issues. - h264: Make sure reinit failures mark the context as not initialized (CVE-2015-3417) - msrle: Use FFABS to determine the frame size in msrle_decode_pal4 (CVE-2015-3395) - cavs: Remove an unneeded scratch buffer - configure: Disable i686 for i586 and lower CPUs (debian/783082) - mjpegenc: Fix JFIF header byte ordering (bug/808) - nut: Make sure to clean up on read_header failure - png: Set the color range as full range - avi: Validate sample_size - nut: Check chapter creation in decode_info_header - alac: Reject rice_limit 0 if compression is used - ape: Support _0000 files with nblock smaller than 64 - mux: Do not leave stale side data pointers in ff_interleave_add_packet() - avresample: Reallocate the internal buffer to the correct size (bug/825) - mpegts: Update the PSI/SI table only if the version change - rtsp: Make sure we don't write too many transport entries into a fixed-size array - rtpenc_jpeg: Handle case of picture dimensions not dividing by 8 - mov: Fix little endian audio detection - x86: Put COPY3_IF_LT under HAVE_6REGS (gentoo/541930) - roqvideoenc: set enc->avctx in roq_encode_init - mp3: Properly use AVCodecContext API - libvpx: Fix mixed use of av_malloc() and av_reallocp() - Revert "lavfi: always check av_expr_parse_and_eval() return value" - alsdec: only adapt order for positive max_order - alsdec: check sample pointer range in revert_channel_correlation - aacpsy: correct calculation of minath in psy_3gpp_init - alsdec: limit avctx->bits_per_raw_sample to 32 - aasc: return correct buffer size from aasc_decode_frame - matroskadec: fix crash when parsing invalid mkv - avconv: do not overwrite the stream codec context for streamcopy - webp: ensure that each transform is only used once - h264_ps: properly check cropping parameters against overflow - hevc: zero the correct variables on invalid crop parameters - hevc: make the crop sizes unsigned . [ Reinhard Tartler] * drop 01-configure-disable-i686-for-i586 Checksums-Sha1: 538319e4e8368ab10f6fa47c93ce82356fb73cca 3973 libav_11.4-1~deb8u1.dsc c2ab12102de187f2675a56b828b4a5e9136ab747 4860264 libav_11.4.orig.tar.xz e0f10028451b7ad161ba26062e73edc2c36d5481 69200 libav_11.4-1~deb8u1.debian.tar.xz 903e12b2a421cc5fddb0a9ce1851ba03917fb317 18653028 libav-doc_11.4-1~deb8u1_all.deb a62603cccab5e64a89cfa0bcea1630dca344b9b4 60166 libavcodec-extra_11.4-1~deb8u1_all.deb Checksums-Sha256: e1850f4a9a6fd3ea61fa420015cfc4ee9ec4335d99474ed10a127a9063b2135a 3973 libav_11.4-1~deb8u1.dsc 0b7dabc2605f3a254ee410bb4b1a857945696aab495fe21b34c3b6544ff5d525 4860264 libav_11.4.orig.tar.xz 25ac049c1588ff775f2888713644e67c4836eadc0942677e4a288d2eace6f763 69200 libav_11.4-1~deb8u1.debian.tar.xz a93bdbe254bb1fdefcbe4a864944f8794de128c2b4a68e33efb9bca46d9109fd 18653028 libav-doc_11.4-1~deb8u1_all.deb befe81c541b05e9acb08c3e1deeb76f2f0c36af20e423158773b41c43ec0a1fc 60166 libavcodec-extra_11.4-1~deb8u1_all.deb Files: b87dd8ac6908e60a858e074723446366 3973 libs optional libav_11.4-1~deb8u1.dsc 98c264530a3a5e569543f60b917c3daa 4860264 libs optional libav_11.4.orig.tar.xz 7a968488289e7d1eb915df8a7b7bd695 69200 libs optional libav_11.4-1~deb8u1.debian.tar.xz 6860489e1a1a58726fbcea068be0393f 18653028 doc optional libav-doc_11.4-1~deb8u1_all.deb 299384dc2e65e0950cf8d38452e04f4a 60166 metapackages extra libavcodec-extra_11.4-1~deb8u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJVcKPjAAoJEGny/FFupxmTuygQAIBplWc4K2xyFU14+I71ETou 1We6aqOZ8blozE0b5kBfDZPD0fJ+PPDU7H/Sru4/V8HgUzH+6Eo+KnGjNL/GXzc9 nAr8/w6/CePyeVSMrcKLjdoxROlEDTE63aN37Xgt99w7a9RKWimyXaiW4/51mXnR NpwQR8c1fCE9ZIy0EgoeDmsZUWcr/I2FoUtltHvveXdVeCE2RBku3y86MQLl+Tau p/xsBm0nshxoKRdQI3Cq8Xlaso9WmM8H99r6jo/sJi/pFXRC940evfwfvUeWNFGC v6Xe18cJkW3QLoKPLvam3+Dt6FBUyiVPtk2zDm6VeYkRKEGixX+L7dYxRylRJRJM gCrEUaRSByjUFvpiqB3Yp7W+IZUfis3e578Nvc3RCZS9pchqEXMjASI3lri4qrE3 22e2llzZSr2jAz/FABcXl4uHLCpTSiyq8w4nii2BoIubFuiv3VRI4hT2aBelyNj0 We3i939Jkb0nQDDbFjv9rjHiVVCVnOF95en7q3K0SAolfUBJhiGExiyIk5l9hK5M tXRGqXw9X6vOgC6P5zTTtNOFRUEb2hlheD3cOZTZeyTekxk6/l1iz9bCxfLlSIPm bF/KKBykMvPKplh449/hrk+XhX0dzenU5N+jUSbkxeMFXX4sSwqXAXyuF3WX0pvi sXpqmgFn0i6h6F1+5FV+ =w06A -----END PGP SIGNATURE-----