it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Moritz Muehlenhoff <jmm AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 4900-1] gst-plugins-good1.0
- Date: Sat, 24 Apr 2021 17:43:10 +0000
- Authentication-results: mail02.piratenpartei.de; dkim=none; dmarc=none; spf=none (mail02.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 82.195.75.100) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"
- List-archive: https://lists.debian.org/msgid-search/20210424174310.GA11452 AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From: Date:Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=Xs7mRa1E7v9G6reUALbE4qqXnHNXFlUryCUa22VvInA=; b=s/ wbEjJ3xXd0UgLyX2Ijj3b/OSdO5YxJL3KumPJNb17HTNlFKEejrFy9bdQgUWNlA+ySYD1yj3PiD7A o3lacJ3/utyjckIc/bxCHpc6K7RGkzR1sqY3f2eCwjbkQrlAF5BKp9Hbt+8qTi2PhObYdb6Oh76zt EdboGX2u8kg0VijbHZ/RMpPkOIGF+Oge58VT0gxsGtRLWWUgf+o+60YPge45Ud8UJ25oMWhzEtGs1 zGoIHC29mXvH8wVVZWimZQd//qtaTpyvPgEtNOUcUUsxr1voLngbUH81bf6/PVEoRrGE/v1ZsOXps QlOh4YxRHpxeM5FwtWlnpdly6EIK3BxQ==;
- Old-return-path: <jmm AT seger.debian.org>
- Priority: urgent
- Resent-date: Sat, 24 Apr 2021 17:43:29 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <vxGWMuyTZRB.A.arF.BjFhgB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4900-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
April 24, 2021 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : gst-plugins-good1.0
CVE ID : CVE-2021-3497 CVE-2021-3498
Debian Bug : 986910 986911
Multiple vulnerabilities were discovered in plugins for the GStreamer
media framework, which may result in denial of service or potentially
the execution of arbitrary code if a malformed media file is opened.
For the stable distribution (buster), these problems have been fixed in
version 1.14.4-1+deb10u1.
We recommend that you upgrade your gst-plugins-good1.0 packages.
For the detailed security status of gst-plugins-good1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-good1.0
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=o26I
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 4900-1] gst-plugins-good1.0, Moritz Muehlenhoff, 26.04.2021
Archiv bereitgestellt durch MHonArc 2.6.24.