lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20160304204432.GA5107@pisco.westfalen.local>
Date: Fri, 4 Mar 2016 21:44:32 +0100
From: Moritz Muehlenhoff <jmm@...ian.org>
To: bugtraq@...urityfocus.com
Subject: [SECURITY] [DSA 3506-1] libav security update

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3506-1                   security@...ian.org
https://www.debian.org/security/                       Moritz Muehlenhoff
March 04, 2016                        https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : libav
CVE ID         : CVE-2016-1897 CVE-2016-1898 CVE-2016-2326

Several security issues have been corrected in multiple demuxers and
decoders of the libav multimedia library.

For the oldstable distribution (wheezy), these problems have been fixed
in version 6:0.8.17-2.

For the stable distribution (jessie), libav has been updated to
11.6-1~deb8u1 which brings several further bugfixes as detailed in
the upstream changelog:
https://git.libav.org/?p=libav.git;a=blob;f=Changelog;hb=refs/tags/v11.6

We recommend that you upgrade your libav packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@...ts.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=JTXK
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ