• [SECURITY] [DSA 3822-1] gstreamer1.0 security update

    From Moritz Muehlenhoff@1:229/2 to All on Mon Mar 27 23:20:01 2017
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA256

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-3822-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff
    March 27, 2017 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : gstreamer1.0
    CVE ID : CVE-2017-5838

    Hanno Boeck discovered multiple vulnerabilities in the GStreamer media framework and its codecs and demuxers, which may result in denial of
    service or the execution of arbitrary code if a malformed media file is
    opened.

    For the stable distribution (jessie), this problem has been fixed in
    version 1.4.4-2+deb8u1.

    For the upcoming stable distribution (stretch), this problem has been
    fixed in version 1.10.3-1.

    For the unstable distribution (sid), this problem has been fixed in
    version version 1.10.3-1.

    We recommend that you upgrade your gstreamer1.0 packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCAAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAljZeWAACgkQEMKTtsN8 Tjb7Cw//bOpMIt+pvp5XGNHBPkEe8xLhNtdo8c6YPeQNufv5zQTcK3mjiMGH5bVA cOLIWFMP0J5Cf9elyjH2BzQpNU/JQtu3CVymOwroxeAjEUNx46s/1cYRDftmLPoA LaGlAntYf3AC4dDce7LA/DIZZUgoIg2vytonGeMNTkpABbTUWPz5PF98Pxk0xmnR hrpWNeXHPCqUVkHzqdGQRNhJB1ay2reC3aCSOMFcmGCYmGRTW0nzyeTrkyDez7y/ KkS1SAZVvMLHaQk+4X+++hWM9t4vj6iqzrhU8vjVCvAqy9UhC1xn58MQxHaraa3G U4S3mSt/dXoZbhXffX7UZ4yJPzhzQ8h1e7x4HODfX10OgPGuCWwXW1qZKYWyd3cd //z4+bdZQyihWH4OaNH56KvfOo+LeEGfBUM9WW5kW51s6QWw2wurCptUIWVRwP07 0X5sWp8gUYQJFP+MsZeYnvFATxsjGPd7EGtooQuhbkSkygIM0FLrAn2gA08X2IvV yu7Ilsn7RAn88PsKZ06WeI85ZlvVB5zpzXQU/2yGipfPJalrX9erQbxIW8qcdfgt RdoR7Qj0eWyQLXDwnFh/FvClJyERJBtJekf4aBW0dRBUerLmtth2GfiGM7AWtcTn XyrS8zp+7f9u9oCPM1tZ0/psdW86jQ7llKEDUKl6zrVKETuINzQ=
    =+9st
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)