it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Moritz Muehlenhoff <jmm AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 5445-1] gst-plugins-good1.0 security update
- Date: Sun, 2 Jul 2023 08:45:14 +0000
- Authentication-results: mail.piratenpartei.de; dkim=none; spf=none (mail.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 2001:41b8:202:deb:216:36ff:fe40:4002) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
- List-archive: https://lists.debian.org/msgid-search/ZKE5Gv7elh4C2zf+ AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=iNmkQwMRq4MKl84qmNb3sEaGqIFW7omQ79W0HbwxAU4=; b=mO wl0kE7FLoXMqYW7ayD/6hgTIvUXt2hbUf4m6pWDeMK6aqhijIGoTkJmP8+/e0zzMZARAqb0KfPe56 NEYAsRvRzEBr7LEPoayu/77HB4Czu0rWNzOboXoWdBOsVG1XS+LS2zcnMgzuLqCm6ocRs9GupC6QJ Unu6qXLW8DahXr2647nge0iJB376SaPF3vw4CHEGGiUxnhevOl5OJ4UqFPBYfiz7I6KVP414x4NZr pou+66nXNMgHl444XsX1Yk5233Idaiyhp+vLT3/Nu+/hiCxp67a5YcX1w1ZeWqJMCSZ7Lgx1/sZ4y KWf9oD83Td/FgfJMEiISfhrFJiOtTLbg==;
- Old-return-path: <jmm AT seger.debian.org>
- Priority: urgent
- Resent-date: Sun, 2 Jul 2023 08:45:46 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <sjJ-6-tHJM.A.X1F.6kTokB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5445-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
July 02, 2023 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : gst-plugins-good1.0
CVE ID : not yet available
Multiple multiple vulnerabilities were discovered in plugins for the
GStreamer media framework and its codecs and demuxers, which may result
in denial of service or potentially the execution of arbitrary code if a
malformed media file is opened.
For the oldstable distribution (bullseye), this problem has been fixed
in version 1.18.4-2+deb11u2.
For the stable distribution (bookworm), this problem has been fixed in
version 1.22.0-5+deb12u1.
We recommend that you upgrade your gst-plugins-good1.0 packages.
For the detailed security status of gst-plugins-good1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-good1.0
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=3bHm
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 5445-1] gst-plugins-good1.0 security update, Moritz Muehlenhoff, 02.07.2023
Archiv bereitgestellt durch MHonArc 2.6.24.