UbuntuUpdates.org

Package "gstreamer0.10-plugins-good-doc"

Name: gstreamer0.10-plugins-good-doc

Description:

GStreamer documentation for plugins from the "good" set

Latest version: 0.10.31-3+nmu4ubuntu2.16.04.3
Release: xenial (16.04)
Level: security
Repository: universe
Head package: gst-plugins-good0.10

Links


Download "gstreamer0.10-plugins-good-doc"


Other versions of "gstreamer0.10-plugins-good-doc" in Xenial

Repository Area Version
base universe 0.10.31-3+nmu4ubuntu2~gcc5.1
updates universe 0.10.31-3+nmu4ubuntu2.16.04.3

Changelog

Version: 0.10.31-3+nmu4ubuntu2.16.04.3 2017-03-27 18:07:06 UTC

  gst-plugins-good0.10 (0.10.31-3+nmu4ubuntu2.16.04.3) xenial-security; urgency=medium

  * SECURITY UPDATE: DoS in gst_aac_parse_sink_setcaps
    - debian/patches/CVE-2016-10198.patch: make sure there's enough data in
      gst/audioparsers/gstaacparse.c.
    - CVE-2016-10198
  * SECURITY UPDATE: DoS in qtdemux_tag_add_str_full
    - debian/patches/CVE-2016-10199.patch: fix out of bounds read in
      gst/isomp4/qtdemux.c.
    - CVE-2016-10199
  * SECURITY UPDATE: DoS in qtdemux_parse_samples
    - debian/patches/CVE-2017-5840.patch: properly increment stts index in
      gst/isomp4/qtdemux.c.
    - CVE-2017-5840

 -- Marc Deslauriers <email address hidden> Thu, 23 Mar 2017 10:54:01 -0400

Source diff to previous version
CVE-2016-1019 Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code
CVE-2017-5840 The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial o

Version: 0.10.31-3+nmu4ubuntu2.16.04.2 2016-11-28 14:07:05 UTC

  gst-plugins-good0.10 (0.10.31-3+nmu4ubuntu2.16.04.2) xenial-security; urgency=medium

  * SECURITY UPDATE: incomplete fix for flx decoder security issue
    - debian/gstreamer-plugins-good.install: remove FLX decoder plugin.
    - No CVE number

 -- Marc Deslauriers <email address hidden> Fri, 25 Nov 2016 14:11:29 -0500

Source diff to previous version

Version: 0.10.31-3+nmu4ubuntu2.16.04.1 2016-11-22 21:06:49 UTC

  gst-plugins-good0.10 (0.10.31-3+nmu4ubuntu2.16.04.1) xenial-security; urgency=medium

  * SECURITY UPDATE: code execution via out-of-bounds write in flx decoder
    - debian/patches/flxdec-bounds1.patch: add bounds checking to
      gst/flx/gstflxdec.c.
    - debian/patches/flxdec-bounds2.patch: fix compiler warnings in
      gst/flx/gstflxdec.c.
    - No CVE number
  * debian/patches/docs_ftbfs.patch: fix FTBFS.

 -- Marc Deslauriers <email address hidden> Tue, 22 Nov 2016 08:53:28 -0500




About   -   Send Feedback to @ubuntu_updates