Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

openSUSE 15-SP3: 2022:10252-1 Important: VLC Security Update

opensuse
Calendar Grey December 27, 2022
Dist Opensuse Esm H88
A crucial openSUSE upgrade for vlc has been released, addressing three major concerns. Adhere to the guidelines to apply the fix.
An update that fixes three vulnerabilities is now available

Description

This update for vlc fixes the following issues:

- Update to version 3.0.18 (CVE-2022-41325, boo#1206142):

+ macOS: Fix audio device listing with non-latin names.

+ Misc: Fix rendering and performance issue with older GPUs.

+ Updated translations.

- Changes from version 3.0.18-rc2:

+ Codec/Demux:

- Add support for Y16 chroma.

- Fix build of gme plugin.

+ Lua:

- Fix script for vocaroo.

- Fix script for youtube to allow throttled playback.

+ Service Discovery: Fix UPnP regression on Windows.

+ Video Output: Fix video placement with caopengllayer.

+ Misc: Fix password search in kwallet module.

- Changes from version 3.0.18-rc:

+ Demux:

- Major adaptive streaming update, notably for multiple timelies and

webvtt.

- Fix seeking with some fragmented MP4 files.

- Add support for DVBSub inside MKV.

- Fix some Flac files that could not be played.

- Improve seeking in...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP3:

zypper in -t patch openSUSE-2022-10252=1

Package List

- openSUSE Backports SLE-15-SP3 (aarch64 ppc64le s390x x86_64):

libvlc5-3.0.18-bp153.2.6.1

libvlccore9-3.0.18-bp153.2.6.1

vlc-3.0.18-bp153.2.6.1

vlc-codec-gstreamer-3.0.18-bp153.2.6.1

vlc-devel-3.0.18-bp153.2.6.1

vlc-jack-3.0.18-bp153.2.6.1

vlc-noX-3.0.18-bp153.2.6.1

vlc-opencv-3.0.18-bp153.2.6.1

vlc-qt-3.0.18-bp153.2.6.1

vlc-vdpau-3.0.18-bp153.2.6.1

- openSUSE Backports SLE-15-SP3 (noarch):

vlc-lang-3.0.18-bp153.2.6.1

References

https://www.suse.com/security/cve/CVE-2020-0499.html

https://www.suse.com/security/cve/CVE-2021-0561.html

https://www.suse.com/security/cve/CVE-2022-41325.html

https://bugzilla.suse.com/1200944

https://bugzilla.suse.com/1206142

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2022:10252-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP3 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here