[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#921969: marked as done (CVE-2018-20760 CVE-2018-20761 CVE-2018-20762 CVE-2018-20763)



Your message dated Mon, 01 Apr 2019 21:48:56 +0000
with message-id <E1hB4nY-000HRf-77@fasolo.debian.org>
and subject line Bug#921969: fixed in gpac 0.5.2-426-gc5ad4e4+dfsg5-4.1
has caused the Debian Bug report #921969,
regarding CVE-2018-20760 CVE-2018-20761 CVE-2018-20762 CVE-2018-20763
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
921969: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=921969
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Source: gpac
Severity: grave
Tags: security

CVE-2018-20760:
https://github.com/gpac/gpac/commit/4c1360818fc8948e9307059fba4dc47ba8ad255d
https://github.com/gpac/gpac/issues/1177

CVE-2018-20761:
https://github.com/gpac/gpac/commit/35ab4475a7df9b2a4bcab235e379c0c3ec543658
https://github.com/gpac/gpac/issues/1186

CVE-2018-20762:
https://github.com/gpac/gpac/commit/35ab4475a7df9b2a4bcab235e379c0c3ec543658
https://github.com/gpac/gpac/issues/1187

CVE-2018-20763:
https://github.com/gpac/gpac/commit/1c449a34fe0b50aaffb881bfb9d7c5ab0bb18cdd
https://github.com/gpac/gpac/issues/1188

Cheers,
        Moritz

--- End Message ---
--- Begin Message ---
Source: gpac
Source-Version: 0.5.2-426-gc5ad4e4+dfsg5-4.1

We believe that the bug you reported is fixed in the latest version of
gpac, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 921969@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Moritz Muehlenhoff <jmm@debian.org> (supplier of updated gpac package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 01 Apr 2019 23:07:02 +0200
Source: gpac
Binary: gpac gpac-modules-base libgpac4 libgpac-dev
Architecture: source amd64
Version: 0.5.2-426-gc5ad4e4+dfsg5-4.1
Distribution: unstable
Urgency: medium
Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org>
Changed-By: Moritz Muehlenhoff <jmm@debian.org>
Description:
 gpac       - GPAC Project on Advanced Content - utilities
 gpac-modules-base - GPAC Project on Advanced Content - modules
 libgpac-dev - GPAC Project on Advanced Content - development files
 libgpac4   - GPAC Project on Advanced Content - shared libraries
Closes: 892526 902782 921969
Changes:
 gpac (0.5.2-426-gc5ad4e4+dfsg5-4.1) unstable; urgency=medium
 .
   * CVE-2018-7752 (Closes: #892526)
   * CVE-2018-13005, CVE-2018-13006 (Closes: #902782)
   * CVE-2018-20760, CVE-2018-20761, CVE-2018-20762, CVE-2018-20763
     (Closes: #921969)
Checksums-Sha1:
 88c95b02c5b5ca1f0e0696ab697e9dd54a2a6f2f 2686 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.dsc
 2ffae4792256cf1f96dd9ca8e91ba4082f54206f 42180 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.debian.tar.xz
 a6a3c9bf1c05f11237894be74a8247b315918360 641276 gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 383bfe0f24177e932c71f88dbab1a7755294b02b 984916 gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 7be3baee0cfbf42126a8695d9319c8303f9763c1 238316 gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 12743d6b8bda69e87efc154ff80f54faf6a82966 15895 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.buildinfo
 6ed3bed1c2251c0b9b8596c231a6874f6c9cf8b8 273874 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 88f35ca3cf249e391b9ce1d5f7e22d24a7527299 2050152 libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 81542bad03d48360a206243bf082dcfcf5efe87b 5633788 libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 ed532f2123797ef02f2ac8be64fd2f51a80c8737 1558852 libgpac4_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
Checksums-Sha256:
 ead408615704ef45faf845bb32f7d29c70c93631d331e6538559206d1df67efe 2686 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.dsc
 52a098dd836896b2110be9c9c01c78e5ff7c933617fb23f0d9daf8f2dce08f4a 42180 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.debian.tar.xz
 713bc2e8570f725112e43a95b0876cde008f7db8920d83df4265f1820363faaa 641276 gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 36c5c45705382209f15094c2f3a5da3681398ed8cf45330a98b28d6bf3749626 984916 gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 4f789d4f53424a459e7fdd202cfc931263ab5429db78abd44767ca71259a95a2 238316 gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 90882e0ce11416fa60c7d15586d9d9a2ad1d0b175bb118eed8affdc08f1b45f3 15895 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.buildinfo
 c609a874c6b11ccaea8de310cfd1b297a81aecefa345e68db208238c43f0a520 273874 gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 1fcd4af3793d162b9a7df43d1e04fdd76e2c2592bf1d745c3a1307c846af1bc7 2050152 libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 c6cde3368f45397cf5c3803f829f623e0f302444447fb0527748bd283a88b050 5633788 libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 3218cca5bd29c546309dea48bc40c839c0b2b2a1b4f0b2d5f5949e53e9abd0c4 1558852 libgpac4_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
Files:
 23007082b717e64f33bdd268ca548be4 2686 graphics optional gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.dsc
 732557c580664a355a2c458ae8ec07b8 42180 graphics optional gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1.debian.tar.xz
 3672224b3645a3fdeda5e3bc5eef57cc 641276 debug extra gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 809586bf87e6eaf746a67f77574c8754 984916 debug extra gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 dfaa0061f7fd6189cbbb6f47d79007cc 238316 graphics optional gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 8cad7de83f10667c1af4af3d97c3491a 15895 graphics optional gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.buildinfo
 d7fa04be5e94145a8352127750b60fc2 273874 graphics optional gpac_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 d9ae887a69543b7d4bd9664ac7bc0387 2050152 libdevel optional libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 d927d33519964f33ccfd46c9f369c136 5633788 debug extra libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb
 ce8932645d41d623246ded664efd4227 1558852 libs optional libgpac4_0.5.2-426-gc5ad4e4+dfsg5-4.1_amd64.deb

-----BEGIN PGP SIGNATURE-----
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=do0x
-----END PGP SIGNATURE-----

--- End Message ---

Reply to: