Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package gstreamer-plugins-base for openSUSE:Factory checked in at 2023-08-02 16:48:34 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/gstreamer-plugins-base (Old) and /work/SRC/openSUSE:Factory/.gstreamer-plugins-base.new.22712 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "gstreamer-plugins-base" Wed Aug 2 16:48:34 2023 rev:95 rq:1101859 version:1.22.5 Changes: -------- --- /work/SRC/openSUSE:Factory/gstreamer-plugins-base/gstreamer-plugins-base.changes 2023-07-27 16:50:37.613752701 +0200 +++ /work/SRC/openSUSE:Factory/.gstreamer-plugins-base.new.22712/gstreamer-plugins-base.changes 2023-08-02 16:49:26.869013251 +0200 @@ -39 +39,2 @@ - + subparse: Look for the closing > of a tag after the opening <. + + subparse: Look for the closing > of a tag after the opening < + (bsc#1213131, CVE-2023-37328) @@ -43,0 +45,4 @@ + + Fixes FLAC file parsing integer overflow remote code execution + vulnerability (bsc#1213128, CVE-2023-37327) + + Fixes PGS file parsing heap-based buffer overflow remote code + execution vulnerability (bsc#1213126, CVE-2023-37329) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------