Accepted gst-plugins-good1.0 1.18.4-2+deb11u1 (source) into proposed-updates->stable-new, proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 09 Aug 2022 13:38:18 +0300
Source: gst-plugins-good1.0
Architecture: source
Version: 1.18.4-2+deb11u1
Distribution: bullseye-security
Urgency: medium
Maintainer: Maintainers of GStreamer packages <gst-plugins-good1.0@packages.debian.org>
Changed-By: Sebastian Dröge <slomo@debian.org>
Changes:
gst-plugins-good1.0 (1.18.4-2+deb11u1) bullseye-security; urgency=medium
.
* debian/patches/0001-avidemux-Fix-integer-overflow-resulting-in-heap-corr.patch:
+ Fix heap-based buffer overflow in the avi demuxer when handling certain
AVI files (CVE-2022-1921).
* debian/patches/0001-matroskademux-Avoid-integer-overflow-resulting-in-he.patch:
+ Fix potential heap overwrite in the mkv demuxer when handling certain
Matroska files (CVE-2022-1920).
* debian/patches/0001-qtdemux-Fix-integer-overflows-in-zlib-decompression-.patch:
+ Fix potential heap overwrite in the qt demuxer when handling certain
QuickTime/MP4 files (CVE-2022-2122).
* debian/patches/0001-matroskademux-Fix-integer-overflows-in-zlib-bz2-etc-.patch:
+ Fix potential heap overwrite in the mkv demuxer when handling certain
Matroska/WebM files (CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925).
Checksums-Sha1:
b4ca865cb78aae7042ca614d63efe0016cf9b6ce 3739 gst-plugins-good1.0_1.18.4-2+deb11u1.dsc
aaf8f2aa0bb58cad638b32d0d44a183ed7e7f8b0 3277572 gst-plugins-good1.0_1.18.4.orig.tar.xz
ac5f662218b0b889b2d6be3e515b84eb07ccbb55 37644 gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz
b39e79ca9afe5e9b80bd2f8fa704cfa6638a7ec3 21355 gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo
Checksums-Sha256:
c35fb5c6cc5fed51a158dd43c9acbdfd261c7690d132fe0792ea6612abf16d1d 3739 gst-plugins-good1.0_1.18.4-2+deb11u1.dsc
b6e50e3a9bbcd56ee6ec71c33aa8332cc9c926b0c1fae995aac8b3040ebe39b0 3277572 gst-plugins-good1.0_1.18.4.orig.tar.xz
37260edd5afe7b57e1a7234c20c2f119c575ce775cad6efe88511481257149b5 37644 gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz
bd92ae103de2424ffb2f886deadb0872dc9da20ee15def195f52d60b66c16443 21355 gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo
Files:
01b90bcfa93562b88f1e58ce25721f53 3739 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1.dsc
4ecf1ac5cd422d9c13fe05dbf5e3df26 3277572 libs optional gst-plugins-good1.0_1.18.4.orig.tar.xz
485d4419e3767348bae55d1696150083 37644 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz
f620e87b58de1453697bac7d38865359 21355 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----
iQKmBAEBCgCQFiEEf0vHzDygb5cza7/rBmjMFIbC17UFAmLyQudfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDdG
NEJDN0NDM0NBMDZGOTczMzZCQkZFQjA2NjhDQzE0ODZDMkQ3QjUSHHNsb21vQGNv
YXhpb24ubmV0AAoJEAZozBSGwte1JAYP/0Gdjx6ulX3Osco/H4W/QPnq17uR/12c
tv+YXVDq2p7rgDultJz+FoxcaSggXF2snWlJZzNVHA0HTZ4CgGL/6s9qG+TZSMAV
lRmsZDUH7t0RAurnzG18xpGk7vSpMF7sAnSBf76NehHIXjzxF4zfobJ2D7Rd7Sc9
yILhwv2nbu8G82kQCWmxPzJTvzQ2f1EZZc12RyHGQR9I7+rBU/YY6FNFCg148IHY
Tu/UxJbSICmScca4a3LjMFEsiZ5vW/2fhveSAxnE9FPA6lC9ZH/ia6/vEyBSD1IA
oIBJDPctMw7S9P1ePqwwM+54cSQZsqoloDW81b2N8DNuGXN25KlOigMqYDBlr73o
4Oypm+zj3oeIgfT0Z4tszkZW8xULXDdb+dqWeD4FWwhI91oCXdLzTeL5JSfzd2gd
yToAgj2u5Q4rhq/K846HnWduHaKgg/zRulRVPRhGHMAnP0t6SqtDfI0n9THJQJ+f
DNKkC0o5Ctmk2D+c3Uwl165ICvSW6bNB8ziq2xpIT3qY8g21dCr23eZwUSITBtA3
zSDl1gUAdrSVHzsjY/MmaSjXPglH7gFxb7KNfu/H/idJEvczj6pbFg8RLc6892mJ
9nNQkUWZclPwkUP+HYy+YqUbrdPnpmbWyRBw4TDdAxJB2Phf01Pxtu9Kvh8BRmeq
DUjyJCl7jGxS
=MAMY
-----END PGP SIGNATURE-----
Reply to: