Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 15: FEDORA-2012-3455 Critical: Gstreamer Buffer Overflow

fedora
Calendar Grey February 12, 2009
Dist Fedora Esm H88
Update for xine-lib in Fedora addresses critical security issues. Take action for enhanced system protection!
This release contains one new security fix (CVE-2008-5240) and corrections of previous security fixes

Summary

This package contains the Xine library. It can be used to play back

various media, decode multimedia files from local disk drives, and display

multimedia streamed over the Internet. It interprets many of the most

common multimedia formats available - and some uncommon formats, too.

This release contains one new security fix (CVE-2008-5240) and corrections of

previous security fixes. It also includes fixes for race conditions in

gapless_switch (ref. kde bug #180339) See also:

https://sourceforge.net/projects/xine/

* Tue Feb 10 2009 Rex Dieter - 1.1.16.2-1

- xine-lib-1.1.16.2

* Mon Feb 9 2009 Rex Dieter - 1.1.16.1-4

- gapless-race-fix patch (kdebug#180339)

* Sat Feb 7 2009 Rex Dieter - 1.1.16.1-3

- safe-audio-pause patch (kdebug#180339)

* Mon Jan 26 2009 Rex Dieter - 1.1.16.1-2

- Provides: xine-lib(plugin-abi)%{?_isa} = %{abiver}

- touchup Summary/Description

* Fri Jan 23 2009 Rex Dieter - 1.1.16.1-1

- xine-lib-1.1.16.1

- include avsync patch (#470568)

* Sun Jan 18 2009 Rex Dieter - 1.1.16-2

- drop deepbind patch (#480504)

- caca support (EPEL)

* Wed Jan 7 2009 Kevin Kofler - 1.1.16-1.1

- patch for old libcaca in F9-* Wed Jan 7 2009 Rex Dieter - 1.1.16-1

- xine-lib-1.1.16, plugin ABI 1.25

- --with-external-libdvdnav, include mpeg demuxers (#213597)

* Fri Dec 12 2008 Rex Dieter - 1.1.15-4

- rebuild for pkgconfig deps

su -c 'yum update xine-lib' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 10
Version: 1.1.16.2
Release: 1.fc10
Summary: A multimedia engine

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here