← Back to team overview

medibuntu-maintainers team mailing list archive

[Bug 1078124] Re: updating issues with [USN-1630-1] Libav vulnerabilities and Medibuntu packages

 

Changelog also showed a number of CVE issues:
libav (4:0.8.4-0ubuntu0.12.04.1)
  * Update to 0.8.4 to fix multiple security issues. (LP: #1075593)
    - CVE-2012-2772
    - CVE-2012-2775
    - CVE-2012-2776
    - CVE-2012-2777
    - CVE-2012-2779
    - CVE-2012-2784
    - CVE-2012-2786
    - CVE-2012-2787
    - CVE-2012-2788
    - CVE-2012-2789
    - CVE-2012-2790
    - CVE-2012-2793
    - CVE-2012-2794
    - CVE-2012-2796
    - CVE-2012-2798
    - CVE-2012-2800
    - CVE-2012-2801
    - CVE-2012-2802

libproxy (0.4.7-0ubuntu4.1) precise-security
  * SECURITY UPDATE: possible remote code execution via buffer overflow
    - debian/patches/CVE-2012-4504.patch: move length check to proper
      location in libproxy/url.cpp.
    - CVE-2012-4504


** CVE added: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2012-4504

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2772

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2775

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2776

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2777

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2779

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2784

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2786

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2787

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2788

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2789

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2790

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2793

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2794

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2796

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2798

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2800

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2801

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-2802

-- 
You received this bug notification because you are a member of Medibuntu
Packaging Team, which is subscribed to Medibuntu.
https://bugs.launchpad.net/bugs/1078124

Title:
  updating issues with [USN-1630-1] Libav vulnerabilities and Medibuntu
  packages

To manage notifications about this bug go to:
https://bugs.launchpad.net/medibuntu/+bug/1078124/+subscriptions


References