UbuntuUpdates.org

Package "gstreamer0.10-plugins-good-doc"

Name: gstreamer0.10-plugins-good-doc

Description:

GStreamer documentation for plugins from the "good" set

Latest version: 0.10.31-1ubuntu1.5
Release: precise (12.04)
Level: security
Repository: main
Head package: gst-plugins-good0.10

Links


Download "gstreamer0.10-plugins-good-doc"


Other versions of "gstreamer0.10-plugins-good-doc" in Precise

Repository Area Version
base main 0.10.31-1ubuntu1
updates main 0.10.31-1ubuntu1.5

Changelog

Version: 0.10.31-1ubuntu1.5 2017-03-27 18:06:53 UTC

  gst-plugins-good0.10 (0.10.31-1ubuntu1.5) precise-security; urgency=medium

  * SECURITY UPDATE: DoS in gst_aac_parse_sink_setcaps
    - debian/patches/CVE-2016-10198.patch: make sure there's enough data in
      gst/audioparsers/gstaacparse.c.
    - CVE-2016-10198
  * SECURITY UPDATE: DoS in qtdemux_tag_add_str_full
    - debian/patches/CVE-2016-10199.patch: fix out of bounds read in
      gst/isomp4/qtdemux.c.
    - CVE-2016-10199
  * SECURITY UPDATE: DoS in qtdemux_parse_samples
    - debian/patches/CVE-2017-5840.patch: properly increment stts index in
      gst/isomp4/qtdemux.c.
    - CVE-2017-5840

 -- Marc Deslauriers <email address hidden> Fri, 24 Mar 2017 09:47:03 -0400

Source diff to previous version
CVE-2016-1019 Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code
CVE-2017-5840 The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial o

Version: 0.10.31-1ubuntu1.4 2016-11-28 14:07:03 UTC

  gst-plugins-good0.10 (0.10.31-1ubuntu1.4) precise-security; urgency=medium

  * SECURITY UPDATE: incomplete fix for flx decoder security issue
    - debian/gstreamer-plugins-good.install: remove FLX decoder plugin.
    - No CVE number

 -- Marc Deslauriers <email address hidden> Fri, 25 Nov 2016 14:16:41 -0500

Source diff to previous version

Version: 0.10.31-1ubuntu1.3 2016-11-22 21:06:44 UTC

  gst-plugins-good0.10 (0.10.31-1ubuntu1.3) precise-security; urgency=medium

  * SECURITY UPDATE: code execution via out-of-bounds write in flx decoder
    - debian/patches/flxdec-bounds1.patch: add bounds checking to
      gst/flx/gstflxdec.c.
    - debian/patches/flxdec-bounds2.patch: fix compiler warnings in
      gst/flx/gstflxdec.c.
    - No CVE number

 -- Marc Deslauriers <email address hidden> Tue, 22 Nov 2016 08:56:53 -0500




About   -   Send Feedback to @ubuntu_updates