[vlc-devel] commit: Sync CVEs with master ( Felix Paul Kühne )

git version control git at videolan.org
Sat Apr 19 17:51:41 CEST 2008


vlc | branch: 0.8.6-bugfix | Felix Paul Kühne <fkuehne at videolan.org> | Sat Apr 19 17:52:19 2008 +0200| [70361b4fa054b6809c3db1399928d69faaedd228]

Sync CVEs with master

> http://git.videolan.org/gitweb.cgi/vlc.git/?a=commit;h=70361b4fa054b6809c3db1399928d69faaedd228
---

 NEWS |    5 +++--
 1 files changed, 3 insertions(+), 2 deletions(-)

diff --git a/NEWS b/NEWS
index 48ce06c..22dc817 100644
--- a/NEWS
+++ b/NEWS
@@ -6,8 +6,9 @@ Changes between 0.8.6e and 0.8.6f:
 Security updates:
  * Really fixed subtitle buffer overflow (CVE-2007-6681)
  * Fixed Real RTSP code execution problem (CVE-2008-0073)
- * Fixed MP4 integer overflows (CVE-2008-1489)
- * Fixed cinepak integer overflow
+ * Fixed MP4 integer overflows (CVE-2008-1489, CVE-2008-1768)
+ * Fixed cinepak vulnerabilities (CVE-2008-1769)
+ - More information can be found in VideoLAN-SA-0801 and VideoLAN-SA-0803.
 
 Various bugfixes:
  * The Mozilla plugin registers a usable range of MIME-types on Mac OS X




More information about the vlc-devel mailing list