[SECURITY] [DLA 1770-1] gst-plugins-base1.0 security update

2019-04-28 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: gst-plugins-base1.0 Version: 1.4.4-2+deb8u2 CVE ID : CVE-2019-9928 The RTSP connection parser in the base GStreamer packages version 1.0, which is a streaming media framework, was vulnerable against an heap-based

[SECURITY] [DLA 1769-1] gst-plugins-base0.10 security update

2019-04-28 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 rom: Thorsten Alteholz To: debian-lts-announce@lists.debian.org Subject: [SECURITY] [DLA 1769-1] gst-plugins-base0.10 security update Package: gst-plugins-base0.10 Version: 0.10.36-2+deb8u1 CVE ID : CVE-2019-9928 Debian

[SECURITY] [DLA 1768-1] checkstyle security update

2019-04-28 Thread Adrian Bunk
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: checkstyle Version: 5.9-1+deb8u1 CVE ID : CVE-2019-9658 checkstyle was loading external DTDs by default, which is now disabled by default. If needed it can be re-enabled by setting the system property