[vlc-devel] commit: Sync CVEs with master ( Felix Paul Kühne )
git version control
git at videolan.org
Sat Apr 19 17:51:41 CEST 2008
vlc | branch: 0.8.6-bugfix | Felix Paul Kühne <fkuehne at videolan.org> | Sat Apr 19 17:52:19 2008 +0200| [70361b4fa054b6809c3db1399928d69faaedd228]
Sync CVEs with master
> http://git.videolan.org/gitweb.cgi/vlc.git/?a=commit;h=70361b4fa054b6809c3db1399928d69faaedd228
---
NEWS | 5 +++--
1 files changed, 3 insertions(+), 2 deletions(-)
diff --git a/NEWS b/NEWS
index 48ce06c..22dc817 100644
--- a/NEWS
+++ b/NEWS
@@ -6,8 +6,9 @@ Changes between 0.8.6e and 0.8.6f:
Security updates:
* Really fixed subtitle buffer overflow (CVE-2007-6681)
* Fixed Real RTSP code execution problem (CVE-2008-0073)
- * Fixed MP4 integer overflows (CVE-2008-1489)
- * Fixed cinepak integer overflow
+ * Fixed MP4 integer overflows (CVE-2008-1489, CVE-2008-1768)
+ * Fixed cinepak vulnerabilities (CVE-2008-1769)
+ - More information can be found in VideoLAN-SA-0801 and VideoLAN-SA-0803.
Various bugfixes:
* The Mozilla plugin registers a usable range of MIME-types on Mac OS X
More information about the vlc-devel
mailing list