Bug#1004056: buster-pu: package libsdl1.2/1.2.15+dfsg2-4+deb10u1

2022-01-23 Thread Adrian Bunk
On Wed, Jan 19, 2022 at 10:53:23PM +, Thorsten Alteholz wrote: >... > +libsdl1.2 (1.2.15+dfsg2-4+deb10u1) buster; urgency=medium > + > + * Non-maintainer upload by the LTS Team. > + * CVE-2019-7572: Buffer over-read in IMA_ADPCM_nibble > +in audio/SDL_wave.c. > + * CVE-2019-7573:

Bug#1004056: buster-pu: package libsdl1.2/1.2.15+dfsg2-4+deb10u1

2022-01-19 Thread Thorsten Alteholz
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu The attached debdiff for libsdl1.2 fixes lots of CVEs in Buster. These CVEs are marked as no-dsa by the security team. The same patches are uploaded to Stretch already and