Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 4902-1] gst-plugins-bad1.0 security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 4902-1] gst-plugins-bad1.0 security update


Chronologisch Thread 
  • From: Moritz Muehlenhoff <jmm AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 4902-1] gst-plugins-bad1.0 security update
  • Date: Sat, 24 Apr 2021 17:49:41 +0000
  • Authentication-results: mail02.piratenpartei.de; dkim=none; dmarc=none; spf=none (mail02.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 82.195.75.100) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"
  • List-archive: https://lists.debian.org/msgid-search/20210424174941.GC11452 AT seger.debian.org
  • List-id: <debian-security-announce.lists.debian.org>
  • List-url: <http://lists.debian.org/debian-security-announce/>
  • Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From: Date:Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=ulRsPuVGZMVtlDUfiToIP/CyXzeFhytzlWf0eNO/F20=; b=Lk l7vzxR0IurjIDjBTdiZXjHh5HvG6dLCq+WmbrwhN64mRTVBtZptgH4GDTHyeUJH9y66WRqTLy6iNn JO1Cn/gcJfODJ+yHubvzHmn01b1xOXc5gIvVIyKR6iL9LHFBqzL/8A3TMNkM3B9kTdB7QRfFz4DuD ckgtq6SvwM7LP2WivmNrX1QVpWcXHTZlsZiAyJWEAuPoAI2+KbFJn87QN4lY4Uy81L50yuFIIuFz4 zedG8UhTjzRXDWIkYDblKAtiJKdAC9qjT5QbCHND5qxoMkLyDpR+C1ZarLg0WKs13+s7Jni/fRPXH BD5lvDeCAd3vWqiI18ijUO/ed/bm4+5w==;
  • Old-return-path: <jmm AT seger.debian.org>
  • Priority: urgent
  • Resent-date: Sat, 24 Apr 2021 17:49:59 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <LSMMZuP26mJ.A.4fG.HpFhgB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-4902-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
April 24, 2021 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : gst-plugins-bad1.0
CVE ID : not yet available

Multiple vulnerabilities were discovered in plugins for the GStreamer
media framework, which may result in denial of service or potentially
the execution of arbitrary code if a malformed media file is opened.

For the stable distribution (buster), this problem has been fixed in
version 1.14.4-1+deb10u2.

We recommend that you upgrade your gst-plugins-bad1.0 packages.

For the detailed security status of gst-plugins-bad1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-bad1.0

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=mons
-----END PGP SIGNATURE-----



  • [IT-SecNots] [SECURITY] [DSA 4902-1] gst-plugins-bad1.0 security update, Moritz Muehlenhoff, 26.04.2021

Archiv bereitgestellt durch MHonArc 2.6.24.

Seitenanfang