[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#964304: marked as done (liboggz2: Segmentation Fault (read) in auto_calc_theora())



Your message dated Sun, 09 Feb 2025 01:20:42 +0100
with message-id <sa65xlkm0it.fsf@hjemme.reinholdtsen.name>
and subject line Accepted liboggz 1.1.2-1 (source) into unstable
has caused the Debian Bug report #964304,
regarding liboggz2: Segmentation Fault (read) in auto_calc_theora()
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
964304: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=964304
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: liboggz2
Version: 1.1.1-7
Severity: important
Tags: security, upstream

Dear Maintainer,

This bug causes a crash in the application when a specially crafted
input file is parsed.
It's a read violation to address NULL at src/liboggz/oggz_auto.c:604:8
in auto_calc_theora().

To reproduce:
Install oggz-tools package. Run the command
oggz-validate input_file.ogg

I'm sending attached an input file that triggers the bug.

Thank you,
Rafael.

Attachment: auto_calc_theora.ogg
Description: video/ogg


--- End Message ---
--- Begin Message ---
Version: 1.1.2-1

I forgot to list in the d/changelog entry the BTS issues fixed in this
new upstream release.

-------------------- Start of forwarded message --------------------
From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
To: debian-devel-changes@lists.debian.org
Subject: Accepted liboggz 1.1.2-1 (source) into unstable
Date: Sat, 08 Feb 2025 23:49:33 +0000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Sun, 09 Feb 2025 00:17:00 +0100
Source: liboggz
Architecture: source
Version: 1.1.2-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org>
Changed-By: Petter Reinholdtsen <pere@debian.org>
Changes:
 liboggz (1.1.2-1) unstable; urgency=medium
 .
   * Team upload.
 .
   * New upstream version 1.1.2
    - Dropped man-page-typos.diff merged upstream.
    - Dropped autoreconf.patch merged upstream.
   * Replaced obsolete build depend pkg-config with pkgconf.
Checksums-Sha1:
 2e4e7d71b92cb4f6218b73691ed9ef76be40f7b7 2252 liboggz_1.1.2-1.dsc
 f9f3d610741732ce7d5545d090de32f927af1779 666517 liboggz_1.1.2.orig.tar.gz
 37b868b851981b5c6ebaa207aa2bbb6824774575 6684 liboggz_1.1.2-1.debian.tar.xz
 a7177de1dd8953c46fd98bd8735cd45a0096fb65 7458 liboggz_1.1.2-1_source.buildinfo
Checksums-Sha256:
 421d3f341394eedce4a3eb56d8210d135bfec8600b94bfb3cb178c8cc926031f 2252 liboggz_1.1.2-1.dsc
 c97e4fba7954a9faf79ddcf406992c6f7bb0214e96d4957a07a2fda0265e5ab2 666517 liboggz_1.1.2.orig.tar.gz
 3fb08ffd3baada7c5d0c696c2aa92829dbb1eb3c9a8311b2490e76b59d49922f 6684 liboggz_1.1.2-1.debian.tar.xz
 e4095bad5e96b920c5990343dc1922776110689b5ebb521c301c2abf88d58594 7458 liboggz_1.1.2-1_source.buildinfo
Files:
 ab81e31e00384a3619cd86def733debb 2252 net optional liboggz_1.1.2-1.dsc
 89355413ddaff2b694a311e19803a71f 666517 net optional liboggz_1.1.2.orig.tar.gz
 864cf163cd14d128e4ea2148c7fe0ce3 6684 net optional liboggz_1.1.2-1.debian.tar.xz
 95dab889c8a6c82f56ac3fd91e4b9b66 7458 net optional liboggz_1.1.2-1_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=rcT4
-----END PGP SIGNATURE-----

Attachment: pgpTtNmlFxv24.pgp
Description: PGP signature

-------------------- End of forwarded message --------------------

--- End Message ---

Reply to: