-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 09 Aug 2022 13:38:18 +0300 Source: gst-plugins-good1.0 Architecture: source Version: 1.18.4-2+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: Maintainers of GStreamer packages <gst-plugins-good...@packages.debian.org> Changed-By: Sebastian Dröge <sl...@debian.org> Changes: gst-plugins-good1.0 (1.18.4-2+deb11u1) bullseye-security; urgency=medium . * debian/patches/0001-avidemux-Fix-integer-overflow-resulting-in-heap-corr.patch: + Fix heap-based buffer overflow in the avi demuxer when handling certain AVI files (CVE-2022-1921). * debian/patches/0001-matroskademux-Avoid-integer-overflow-resulting-in-he.patch: + Fix potential heap overwrite in the mkv demuxer when handling certain Matroska files (CVE-2022-1920). * debian/patches/0001-qtdemux-Fix-integer-overflows-in-zlib-decompression-.patch: + Fix potential heap overwrite in the qt demuxer when handling certain QuickTime/MP4 files (CVE-2022-2122). * debian/patches/0001-matroskademux-Fix-integer-overflows-in-zlib-bz2-etc-.patch: + Fix potential heap overwrite in the mkv demuxer when handling certain Matroska/WebM files (CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925). Checksums-Sha1: b4ca865cb78aae7042ca614d63efe0016cf9b6ce 3739 gst-plugins-good1.0_1.18.4-2+deb11u1.dsc aaf8f2aa0bb58cad638b32d0d44a183ed7e7f8b0 3277572 gst-plugins-good1.0_1.18.4.orig.tar.xz ac5f662218b0b889b2d6be3e515b84eb07ccbb55 37644 gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz b39e79ca9afe5e9b80bd2f8fa704cfa6638a7ec3 21355 gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo Checksums-Sha256: c35fb5c6cc5fed51a158dd43c9acbdfd261c7690d132fe0792ea6612abf16d1d 3739 gst-plugins-good1.0_1.18.4-2+deb11u1.dsc b6e50e3a9bbcd56ee6ec71c33aa8332cc9c926b0c1fae995aac8b3040ebe39b0 3277572 gst-plugins-good1.0_1.18.4.orig.tar.xz 37260edd5afe7b57e1a7234c20c2f119c575ce775cad6efe88511481257149b5 37644 gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz bd92ae103de2424ffb2f886deadb0872dc9da20ee15def195f52d60b66c16443 21355 gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo Files: 01b90bcfa93562b88f1e58ce25721f53 3739 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1.dsc 4ecf1ac5cd422d9c13fe05dbf5e3df26 3277572 libs optional gst-plugins-good1.0_1.18.4.orig.tar.xz 485d4419e3767348bae55d1696150083 37644 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1.debian.tar.xz f620e87b58de1453697bac7d38865359 21355 libs optional gst-plugins-good1.0_1.18.4-2+deb11u1_amd64.buildinfo
-----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEEf0vHzDygb5cza7/rBmjMFIbC17UFAmLyQudfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDdG NEJDN0NDM0NBMDZGOTczMzZCQkZFQjA2NjhDQzE0ODZDMkQ3QjUSHHNsb21vQGNv YXhpb24ubmV0AAoJEAZozBSGwte1JAYP/0Gdjx6ulX3Osco/H4W/QPnq17uR/12c tv+YXVDq2p7rgDultJz+FoxcaSggXF2snWlJZzNVHA0HTZ4CgGL/6s9qG+TZSMAV lRmsZDUH7t0RAurnzG18xpGk7vSpMF7sAnSBf76NehHIXjzxF4zfobJ2D7Rd7Sc9 yILhwv2nbu8G82kQCWmxPzJTvzQ2f1EZZc12RyHGQR9I7+rBU/YY6FNFCg148IHY Tu/UxJbSICmScca4a3LjMFEsiZ5vW/2fhveSAxnE9FPA6lC9ZH/ia6/vEyBSD1IA oIBJDPctMw7S9P1ePqwwM+54cSQZsqoloDW81b2N8DNuGXN25KlOigMqYDBlr73o 4Oypm+zj3oeIgfT0Z4tszkZW8xULXDdb+dqWeD4FWwhI91oCXdLzTeL5JSfzd2gd yToAgj2u5Q4rhq/K846HnWduHaKgg/zRulRVPRhGHMAnP0t6SqtDfI0n9THJQJ+f DNKkC0o5Ctmk2D+c3Uwl165ICvSW6bNB8ziq2xpIT3qY8g21dCr23eZwUSITBtA3 zSDl1gUAdrSVHzsjY/MmaSjXPglH7gFxb7KNfu/H/idJEvczj6pbFg8RLc6892mJ 9nNQkUWZclPwkUP+HYy+YqUbrdPnpmbWyRBw4TDdAxJB2Phf01Pxtu9Kvh8BRmeq DUjyJCl7jGxS =MAMY -----END PGP SIGNATURE-----