[Git][security-tracker-team/security-tracker][master] Two vulnerabilities (VE-2019-1122{1,2}) for gpac fixed in unstable

Salvatore Bonaccorso carnil at debian.org
Sun Apr 14 08:51:41 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f735738b by Salvatore Bonaccorso at 2019-04-14T07:51:00Z
Two vulnerabilities (VE-2019-1122{1,2}) for gpac fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,13 +15,13 @@ CVE-2019-11223
 CVE-2017-18366 (Subrion CMS 4.1.5 has CSRF in blog/delete/. ...)
 	NOT-FOR-US: Subrion CMS
 CVE-2019-11222 (gf_bin128_parse in utils/os_divers.c in GPAC 0.7.1 has a buffer overfl ...)
-	- gpac <unfixed> (bug #926961)
+	- gpac 0.5.2-426-gc5ad4e4+dfsg5-5 (bug #926961)
 	[stretch] - gpac <no-dsa> (Minor issue)
 	NOTE: https://github.com/gpac/gpac/commit/f36525c5beafb78959c3a07d6622c9028de348da
 	NOTE: https://github.com/gpac/gpac/issues/1204
 	NOTE: https://github.com/gpac/gpac/issues/1205
 CVE-2019-11221 (GPAC 0.7.1 has a buffer overflow issue in gf_import_message() in media ...)
-	- gpac <unfixed> (bug #926963)
+	- gpac 0.5.2-426-gc5ad4e4+dfsg5-5 (bug #926963)
 	[stretch] - gpac <no-dsa> (Minor issue)
 	NOTE: https://github.com/gpac/gpac/commit/f4616202e5578e65746cf7e7ceeba63bee1b094b
 	NOTE: https://github.com/gpac/gpac/issues/1203



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f735738b4e02aadde0a787186e3b1b8ff1029e94

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f735738b4e02aadde0a787186e3b1b8ff1029e94
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190414/d8e44625/attachment.html>


More information about the debian-security-tracker-commits mailing list