libvorbis 1.2.0.dfsg-3.1ubuntu0.9.04.1 source package in Ubuntu

Changelog

libvorbis (1.2.0.dfsg-3.1ubuntu0.9.04.1) jaunty-security; urgency=low

  * SECURITY UPDATE: denial of service and possible code execution from
    crafted .ogg file (LP: #413528)
    - debian/patches/CVE-2009-2663.patch: don't allow repeated values in
      post list in lib/floor1.c and make sure maptype is valid in
      lib/res0.c.
    - CVE-2009-2663
  * SECURITY UPDATE: code execution via heap overflow in residue partition
    value (LP: #232150)
    - debian/patches/CVE-2008-1420.patch: update patch to fix regression
      when reading files encoded with libvorbis 1.0beta1.
    - CVE-2008-1420

 -- Marc Deslauriers <email address hidden>   Fri, 21 Aug 2009 15:18:18 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Jaunty
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
libs
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
libvorbis_1.2.0.dfsg.orig.tar.gz 1.4 MiB 401129deb8a78b53b0c2098a92cdb84114956ef399ce62b38ac28f0bde04133f
libvorbis_1.2.0.dfsg-3.1ubuntu0.9.04.1.diff.gz 8.6 KiB 0fdd9900ee18e6107a60732661a487b8f847bbe3d17882d97fd26f4e188d4d7a
libvorbis_1.2.0.dfsg-3.1ubuntu0.9.04.1.dsc 1.4 KiB c4ad521bf133c2f799589ba0603f033933fa262ae8f8f1a361cf193185be840a

View changes file

Binary packages built by this source

libvorbis-dev: No summary available for libvorbis-dev in ubuntu jaunty.

No description available for libvorbis-dev in ubuntu jaunty.

libvorbis0a: No summary available for libvorbis0a in ubuntu jaunty.

No description available for libvorbis0a in ubuntu jaunty.

libvorbisenc2: No summary available for libvorbisenc2 in ubuntu jaunty.

No description available for libvorbisenc2 in ubuntu jaunty.

libvorbisfile3: No summary available for libvorbisfile3 in ubuntu jaunty.

No description available for libvorbisfile3 in ubuntu jaunty.