Accepted libav 6:11.12-1~deb8u9 (source all amd64) into oldoldstable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Thu, 05 Dec 2019 17:27:00 +0100
Source: libav
Binary: libav-tools libav-dbg libav-doc libavutil54 libavcodec56 libavdevice55 libavformat56 libavfilter5 libswscale3 libavutil-dev libavcodec-dev libavdevice-dev libavformat-dev libavfilter-dev libswscale-dev libavresample-dev libavresample2 libavcodec-extra-56 libavcodec-extra
Architecture: source all amd64
Version: 6:11.12-1~deb8u9
Distribution: jessie-security
Urgency: high
Maintainer: Debian Multimedia Maintainers <pkg-multimedia-maintainers@lists.alioth.debian.org>
Changed-By: Sylvain Beucler <beuc@debian.org>
Description:
libav-dbg - Debug symbols for Libav related packages
libav-doc - Documentation of the Libav API
libav-tools - Multimedia player, encoder and transcoder
libavcodec-dev - Development files for libavcodec
libavcodec-extra - Libav codec library (additional codecs meta-package)
libavcodec-extra-56 - Libav codec library (additional codecs)
libavcodec56 - Libav codec library
libavdevice-dev - Development files for libavdevice
libavdevice55 - Libav device handling library
libavfilter-dev - Development files for libavfilter
libavfilter5 - Libav video filtering library
libavformat-dev - Development files for libavformat
libavformat56 - Libav file format library
libavresample-dev - Development files for libavresample
libavresample2 - Libav audio resampling library
libavutil-dev - Development files for libavutil
libavutil54 - Libav utility library
libswscale-dev - Development files for libswscale
libswscale3 - Libav video scaling library
Changes:
libav (6:11.12-1~deb8u9) jessie-security; urgency=high
.
* Non-maintainer upload by the LTS Security Team.
* CVE-2019-17542: heap-based buffer overflow in vqa_decode_chunk because
of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
* CVE-2019-14443: division by zero in range_decode_culshift in
libavcodec/apedec.c allows remote attackers to cause a denial of
service (application crash), as demonstrated by avconv.
* CVE-2018-19128: heap-based buffer over-read in decode_frame in
libavcodec/lcldec.c that allows an attacker to cause denial-of-service
via a crafted avi file.
* CVE-2017-17127: the vc1_decode_frame function in libavcodec/vc1dec.c
allows remote attackers to cause a denial of service (NULL pointer
dereference and application crash) via a crafted file.
CVE-2018-19130 is a duplicate of this vulnerability.
* CVE-2017-18245: the mpc8_probe function in libavformat/mpc8.c allows
remote attackers to cause a denial of service (heap-based buffer
over-read) via a crafted audio file on 32-bit systems.
Checksums-Sha1:
7207e4fbdb5812917277a7f67fca0317d23e954c 3649 libav_11.12-1~deb8u9.dsc
1f74a0077616e0b236774abbf847af657a167e05 78604 libav_11.12-1~deb8u9.debian.tar.xz
8761466c17784c0fe9d1c67e2491203cf00f2fc0 18600902 libav-doc_11.12-1~deb8u9_all.deb
249b0cdd9af235774ab7885131c3f5f43ea45637 67376 libavcodec-extra_11.12-1~deb8u9_all.deb
3b3cbb5a47304d6ac099106381a10c60c53c5840 475762 libav-tools_11.12-1~deb8u9_amd64.deb
a103533de9abd24d96233e797ea1b4d591f2625a 21606044 libav-dbg_11.12-1~deb8u9_amd64.deb
a5c4c2e84b6618fd05a0009385649aecc458060a 132294 libavutil54_11.12-1~deb8u9_amd64.deb
ce0b6a7d482cda6b835cd2c9a62ddf93f7af5b4e 3108990 libavcodec56_11.12-1~deb8u9_amd64.deb
3a814ebd14d7d5ea825f99e877fd88b35f147156 92104 libavdevice55_11.12-1~deb8u9_amd64.deb
db22f2761f21f71c84cee7a0e81c2bf229d7e6a4 587000 libavformat56_11.12-1~deb8u9_amd64.deb
75b38bda67b9674bae403cd2e45469f726d33360 173154 libavfilter5_11.12-1~deb8u9_amd64.deb
ec13775eb7d9ef7c8477ffbc4ce8d01f91af3058 145606 libswscale3_11.12-1~deb8u9_amd64.deb
3fc69de6d739d316608d756af4ccfb4324b6e187 194122 libavutil-dev_11.12-1~deb8u9_amd64.deb
801fda3d7b55b62265237e2c3f440a0253086b38 3432992 libavcodec-dev_11.12-1~deb8u9_amd64.deb
a5c8dcd1faed0b5a82153170ad5f8c2deb7c6711 95130 libavdevice-dev_11.12-1~deb8u9_amd64.deb
bdb3d1ab78c65a5ceb26267de870d44f21f285fe 692888 libavformat-dev_11.12-1~deb8u9_amd64.deb
758951853e8502b6b21a061f6976aa568d05462d 204248 libavfilter-dev_11.12-1~deb8u9_amd64.deb
46867c8465eba3ae9dd4ee078494a4aa016d6b20 158478 libswscale-dev_11.12-1~deb8u9_amd64.deb
20058a597074d3bf3ee5c1b669c4596851b4cee0 113624 libavresample-dev_11.12-1~deb8u9_amd64.deb
3b487ca5a80f85aba92c5ffbf09fbbd50a017aa3 104632 libavresample2_11.12-1~deb8u9_amd64.deb
3c10079d670c0604319cf3b5ef4e8bf4e6635461 3115374 libavcodec-extra-56_11.12-1~deb8u9_amd64.deb
Checksums-Sha256:
69dce05ce589a4eaa207987a9a78b80bbf3e53e3f2a019c8c064ebdaf9a6e571 3649 libav_11.12-1~deb8u9.dsc
c6e7a52df45330a90e1fb5dcbb5fd4002562dcd8e00857f763a06906dcf9596d 78604 libav_11.12-1~deb8u9.debian.tar.xz
e88745db46de542cd1e618567a5ffe8e37190b9e942dda7ee56ceb1baaa6a5e1 18600902 libav-doc_11.12-1~deb8u9_all.deb
f62e3bca12263b6d25bbc674e77ccd1e872041ef2075b4f54114972a41546ded 67376 libavcodec-extra_11.12-1~deb8u9_all.deb
2f452035c709ff48b6e64d697d363294e75ae3413907a6e5b6ae59b32ab33465 475762 libav-tools_11.12-1~deb8u9_amd64.deb
22915b601a7c0ce91547543f6a3463d49a30951737635ba1f971f4d9a830af66 21606044 libav-dbg_11.12-1~deb8u9_amd64.deb
992dd39eab7277fa944cc2426dcf2c4042a765af55c3c0778433b178f0f81d28 132294 libavutil54_11.12-1~deb8u9_amd64.deb
8ef9185974bd15a2bf622cd03e80333f80ab6a9457f7134fe43f610a83c5e1b9 3108990 libavcodec56_11.12-1~deb8u9_amd64.deb
7f6c8b0107a0137d145a2fe4606f49d653bba853f20a257e0e3c7e4bd2b99b05 92104 libavdevice55_11.12-1~deb8u9_amd64.deb
e2b1d283b9d405fa61074f7c46a8a4c1be22f96c4d8d1210ffdd380cfc6819be 587000 libavformat56_11.12-1~deb8u9_amd64.deb
91efaf8e9420102b175dab6185a9d1744ccb9b5ed7266d296544ec174f000de0 173154 libavfilter5_11.12-1~deb8u9_amd64.deb
eba1dc0e9dc10652961f8ead1747b437f24988c187c13324e9286a80c4259003 145606 libswscale3_11.12-1~deb8u9_amd64.deb
73857575670cd71879f92ea34ae1a8bef276a39329cd07ff3a7c2a7c83a63143 194122 libavutil-dev_11.12-1~deb8u9_amd64.deb
f20601ddfc8ac0cdad1d47cc5b79f88ef758c3800e9c5b583d4695af1588240a 3432992 libavcodec-dev_11.12-1~deb8u9_amd64.deb
0450cf799160ab21eb277ba9cb3986b3ca88d7b35d45a49eae86b94b6793ce58 95130 libavdevice-dev_11.12-1~deb8u9_amd64.deb
e693e7b91a10c1e88df91c14b871324b869a4f4e2b4208485f67d1621de3dee8 692888 libavformat-dev_11.12-1~deb8u9_amd64.deb
bb5efc3d841c71c2755a73e56d44ce6105deb34773e25f7f5aa241ae994ca953 204248 libavfilter-dev_11.12-1~deb8u9_amd64.deb
47e4c25dc55d4af6dbff4cfde5f074c1cb6f3431711fcc0e5fde823ef3a44a29 158478 libswscale-dev_11.12-1~deb8u9_amd64.deb
c4f8f62f72e31d93fbdb9cdb6dab717ad579494b384e99f266828523dd47281a 113624 libavresample-dev_11.12-1~deb8u9_amd64.deb
8b72fe28eec5f9c683e0003d3f2a553ab60f6350077f4106a6c2b589945cc7b9 104632 libavresample2_11.12-1~deb8u9_amd64.deb
b79fb4e0b079421b3ab11ec1c33abc9f8b1603e8612d103b88488e2c8c729416 3115374 libavcodec-extra-56_11.12-1~deb8u9_amd64.deb
Files:
9599765dac065fd2c2c51321dfc531fa 3649 libs optional libav_11.12-1~deb8u9.dsc
9c1fe12c8f13ccfca5461fa28acac922 78604 libs optional libav_11.12-1~deb8u9.debian.tar.xz
c809f3a52d535fcf9b5006f0ffce1942 18600902 doc optional libav-doc_11.12-1~deb8u9_all.deb
316e1c5265be94f9c7b5fba8115eeaa5 67376 metapackages extra libavcodec-extra_11.12-1~deb8u9_all.deb
0c2b44231b1d6f9c0c72010bf4beb1be 475762 video optional libav-tools_11.12-1~deb8u9_amd64.deb
9e79f527a8e106df7035844d0c0cf08b 21606044 debug extra libav-dbg_11.12-1~deb8u9_amd64.deb
1d033c015cade21563050cdeb80feb88 132294 libs optional libavutil54_11.12-1~deb8u9_amd64.deb
cab23a62c4793f452a842d73a5715fab 3108990 libs optional libavcodec56_11.12-1~deb8u9_amd64.deb
15c138f94b71344a4e7dd2c94c29a939 92104 libs optional libavdevice55_11.12-1~deb8u9_amd64.deb
539bc50a897ecd0606a003ce887235da 587000 libs optional libavformat56_11.12-1~deb8u9_amd64.deb
6d761002f6076aaff3022d706ce27874 173154 libs optional libavfilter5_11.12-1~deb8u9_amd64.deb
27c8dd6ae2644fb0ed86d039bf8359b8 145606 libs optional libswscale3_11.12-1~deb8u9_amd64.deb
0d43d0df30e170cf51de89ff9b42fd74 194122 libdevel optional libavutil-dev_11.12-1~deb8u9_amd64.deb
5e5d6185d06fc0792de5b7f0251505a6 3432992 libdevel optional libavcodec-dev_11.12-1~deb8u9_amd64.deb
f1b23008612408209e468a01ac36e7d4 95130 libdevel optional libavdevice-dev_11.12-1~deb8u9_amd64.deb
ccf127f1cd65ce10611079949d7edba4 692888 libdevel optional libavformat-dev_11.12-1~deb8u9_amd64.deb
270824b55c51c0f71837f8a0980aca9d 204248 libdevel optional libavfilter-dev_11.12-1~deb8u9_amd64.deb
9d7ef4b54bade52cd19c0c72f07b8021 158478 libdevel optional libswscale-dev_11.12-1~deb8u9_amd64.deb
3d886e4136b1bdf79a044c3804d105c5 113624 libdevel optional libavresample-dev_11.12-1~deb8u9_amd64.deb
fea07e458d0de95a6c767be5869c2252 104632 libs optional libavresample2_11.12-1~deb8u9_amd64.deb
1e2d62d81b01485e0af56513c6c9bd93 3115374 libs optional libavcodec-extra-56_11.12-1~deb8u9_amd64.deb
-----BEGIN PGP SIGNATURE-----
iQEzBAEBCgAdFiEEQic8GuN/xDR88HkSj/HLbo2JBZ8FAl3pQt8ACgkQj/HLbo2J
BZ/ycQgAh9kJtuAct30myZ50dx9NbzHirsj6rzZQ51w1ntAkmbV54mPD5CrTNMFs
LWMdJEQM8HP2O1dljoSXmv1pI8ny1AIQa5VBifW7hGovXezrdONHK+PE5D8UTai7
Fk39HjJQ6LpsKrqgDzPSolTISi417qpPzAO0lIfRmM7ckw6dVyiP+S5lw8XqNCIG
ThqN6bGBq/dX+HOSR6i/KRQ3a41X6p2os53L4OB0fQkobVdGmdVFS0aXrVXy5SGU
2pyZSAbuxVVzD47Ly5CccccZWBNPRkgRVPnMgUZBGTMo4T2BeR/RY6Ltf0aw7jGp
hAwrDrL3qZPxUPJZRVLccEbjrm6x6g==
=Fgmv
-----END PGP SIGNATURE-----