Will VLC 3.0.7 security fixes be backported to 18.04?

Asked by A Z

There is a nasty bug in VLC =< 3.0.6: https://www.videolan.org/security/sa1901.html
Will 3.0.7 security fixes be backported to LTS?

Question information

Language:
English Edit question
Status:
Solved
For:
Ubuntu vlc Edit question
Assignee:
No assignee Edit question
Solved by:
Manfred Hampl
Solved:
Last query:
Last reply:
Revision history for this message
Best Manfred Hampl (m-hampl) said :
#1

Apparently work on mitigating that vulnerability has already been started:
https://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-5439.html
https://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-12874.html

My guess is that the related patches will be backported to vlc in Ubuntu 18.04 (and other supported Ubuntu releases) within the coming days or weeks.

There is Bug #1812480 which probably covers the related activities.

Revision history for this message
A Z (azaagman) said :
#2

Thanks Manfred Hampl, that solved my question.