UbuntuUpdates.org

Package "mplayer-gui"

Name: mplayer-gui

Description:

movie player for Unix-like systems (GUI variant)

Latest version: 2:1.3.0-7ubuntu0.2
Release: bionic (18.04)
Level: security
Repository: universe
Head package: mplayer
Homepage: https://www.mplayerhq.hu

Links


Download "mplayer-gui"


Other versions of "mplayer-gui" in Bionic

Repository Area Version
base universe 2:1.3.0-7build2
updates universe 2:1.3.0-7ubuntu0.2

Changelog

Version: 2:1.3.0-7ubuntu0.2 2023-02-27 18:06:46 UTC

  mplayer (2:1.3.0-7ubuntu0.2) bionic-security; urgency=medium

  * SECURITY UPDATE: multiple security issues
    - debian/patches/CVE-2022-38850_*.patch
    - CVE-2022-38850
    - CVE-2022-38851
    - CVE-2022-38855
    - CVE-2022-38858
    - CVE-2022-38860
    - CVE-2022-38861
    - CVE-2022-38863
    - CVE-2022-38864
    - CVE-2022-38865
    - CVE-2022-38866
  * Add patch to fix FTBFS with glibc 2.27 on i386

 -- Fabian Toepfer <email address hidden> Fri, 24 Feb 2023 18:23:06 +0100

CVE-2022-38850 The MPlayer Project mencoder SVN-r38374-13.0.1 is vulnerable to Divide By Zero via the function config () of llibmpcodecs/vf_scale.c.
CVE-2022-38851 Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/libmpdemux/asfheader.c. This aff
CVE-2022-38855 Certain The MPlayer Project products are vulnerable to Buffer Overflow via function gen_sh_video () of mplayer/libmpdemux/demux_mov.c. This affects m
CVE-2022-38858 Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mov_build_index() of libmpdemux/demux_mov.c. This affects mplayer
CVE-2022-38860 Certain The MPlayer Project products are vulnerable to Divide By Zero via function demux_open_avi() of libmpdemux/demux_avi.c which affects mencoder.
CVE-2022-38861 The MPlayer Project mplayer SVN-r38374-13.0.1 is vulnerable to memory corruption via function free_mp_image() of libmpcodecs/mp_image.c.
CVE-2022-38863 Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mp_getbits() of libmpdemux/mpeg_hdr.c which affects mencoder and
CVE-2022-38864 Certain The MPlayer Project products are vulnerable to Buffer Overflow via the function mp_unescape03() of libmpdemux/mpeg_hdr.c. This affects mencod
CVE-2022-38865 Certain The MPlayer Project products are vulnerable to Divide By Zero via the function demux_avi_read_packet of libmpdemux/demux_avi.c. This affects
CVE-2022-38866 Certain The MPlayer Project products are vulnerable to Buffer Overflow via read_avi_header() of libmpdemux/aviheader.c . This affects mplayer SVN-r38



About   -   Send Feedback to @ubuntu_updates