Accepted:
OK: xmms_1.2.10+cvs20060429-1ubuntu2.1.dsc
-> Component: main Section: sound
OK: xmms_1.2.10+cvs20060429-1ubuntu2.1.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 26 Mar 2007 19:09:28 -0700
Source: xmms
Binary: xmms-dev xmms
Architecture: source
Version: 1.2.10+cvs20060429-1ubuntu2.1
Distribution: edgy-security
Urgency: low
Maintainer: David Moreno Garza <[EMAIL PROTECTED]>
Changed-By: Kees Cook <[EMAIL PROTECTED]>
Description:
xmms - Versatile X audio player
xmms-dev - XMMS development static library and header files
Changes:
xmms (1.2.10+cvs20060429-1ubuntu2.1) edgy-security; urgency=low
.
* SECURITY UPDATE: code execution via integer overflows in bmp loader.
* xmms/bmp.c: bounds-check sizes, patched inline.
* References
CVE-2007-0653 CVE-2007-0654
Files:
d97a5a09fc238c29c59b8b233644df99 992 sound optional
xmms_1.2.10+cvs20060429-1ubuntu2.1.dsc
36a8a27753ac35ce35d76697a272855b 194003 sound optional
xmms_1.2.10+cvs20060429-1ubuntu2.1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGCX+RH/9LqRcGPm0RArogAJ4xDsr1ost8gz+oAQ4afVNnZzXIFACffdQw
EZksvjTHF5foup8n4J6W6aE=
=H7wx
-----END PGP SIGNATURE-----
--
edgy-changes mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/edgy-changes