[Git][security-tracker-team/security-tracker][master] Add reference to VLC VideoLAN-SB-VLC-308 bulletin

Salvatore Bonaccorso carnil at debian.org
Thu Aug 22 07:18:28 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f977e145 by Salvatore Bonaccorso at 2019-08-22T06:17:07Z
Add reference to VLC VideoLAN-SB-VLC-308 bulletin

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1073,6 +1073,7 @@ CVE-2019-14970
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14969 (Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\N ...)
 	NOT-FOR-US: Netwrix Auditor
 CVE-2019-14968 (An issue was discovered in imcat 4.9. There is SQL Injection via the i ...)
@@ -1605,14 +1606,17 @@ CVE-2019-14778
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14777
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14776
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14775
 	RESERVED
 CVE-2019-12625 [clamav zip DoS]
@@ -2188,14 +2192,17 @@ CVE-2019-14535
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14534
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14533
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14532 (An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off ...)
 	- sleuthkit <unfixed> (unimportant)
 	NOTE: https://github.com/sleuthkit/sleuthkit/issues/1575
@@ -2287,6 +2294,7 @@ CVE-2019-14498
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14497 (ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTr ...)
 	- milkytracker <unfixed> (bug #933964)
 	NOTE: https://github.com/milkytracker/MilkyTracker/issues/182
@@ -3026,10 +3034,12 @@ CVE-2019-14438
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14437
 	RESERVED
 	{DSA-4504-1}
 	- vlc 3.0.8-1
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-14436
 	RESERVED
 CVE-2019-14435
@@ -4238,6 +4248,7 @@ CVE-2019-13962 (lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VL
 	[jessie] - vlc <end-of-life> (https://lists.debian.org/debian-security-announce/2018/msg00130.html)
 	NOTE: http://git.videolan.org/?p=vlc/vlc-3.0.git;a=commit;h=2b4f9d0b0e0861f262c90e9b9b94e7d53b864509
 	NOTE: https://trac.videolan.org/vlc/ticket/22240
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-13961 (A CSRF vulnerability was found in flatCore before 1.5, leading to the  ...)
 	NOT-FOR-US: flatCore
 CVE-2019-13960 (** DISPUTED ** In libjpeg-turbo 2.0.2, a large amount of memory can be ...)
@@ -6038,6 +6049,7 @@ CVE-2019-13602 (An Integer Underflow in MP4_EIA608_Convert() in modules/demux/mp
 	[jessie] - vlc <end-of-life> (https://lists.debian.org/debian-security-announce/2018/msg00130.html)
 	NOTE: https://git.videolan.org/?p=vlc.git;a=commit;h=8e8e0d72447f8378244f5b4a3dcde036dbeb1491
 	NOTE: https://git.videolan.org/?p=vlc.git;a=commit;h=b2b157076d9e94df34502dd8df0787deb940e938
+	NOTE: https://www.videolan.org/security/sb-vlc308.html
 CVE-2019-13601
 	RESERVED
 CVE-2019-13600



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f977e145fc9670cb717506b7dbd0d9f2e90063e3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f977e145fc9670cb717506b7dbd0d9f2e90063e3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190822/064a1d30/attachment.html>


More information about the debian-security-tracker-commits mailing list