[Secure-testing-commits] r8434 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Fri Mar 28 01:20:29 UTC 2008


Author: nion
Date: 2008-03-28 01:20:28 +0000 (Fri, 28 Mar 2008)
New Revision: 8434

Modified:
   data/CVE/list
Log:
rtsp buffer overflow in xine-lib also affect vlc and mplayer, bugs filed

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-03-28 00:26:55 UTC (rev 8433)
+++ data/CVE/list	2008-03-28 01:20:28 UTC (rev 8434)
@@ -3399,9 +3399,8 @@
 	NOT-FOR-US: Microsoft Internet Explorer
 CVE-2008-0073 (Array index error in the sdpplin_parse function in ...)
 	- xine-lib 1.1.11-1 (medium)
-	- mplayer <unfixed>
-	- vlc <unfixed>
-	TODO: report bugs for vlc and mplayer
+	- mplayer <unfixed> (medium; bug #473056)
+	- vlc <unfixed> (medium; bug #473057)
 	NOTE: http://bugs.xine-project.org/show_bug.cgi?id=58
 CVE-2008-0072 (Format string vulnerability in the emf_multipart_encrypted function in ...)
 	{DSA-1512-1}




More information about the Secure-testing-commits mailing list