Your message dated Sun, 14 Apr 2019 10:32:08 +0000
with message-id <e1hfcqi-000bl2...@fasolo.debian.org>
and subject line Bug#921969: fixed in gpac 0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1
has caused the Debian Bug report #921969,
regarding CVE-2018-20760 CVE-2018-20761 CVE-2018-20762 CVE-2018-20763
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
921969: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=921969
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: gpac
Severity: grave
Tags: security
CVE-2018-20760:
https://github.com/gpac/gpac/commit/4c1360818fc8948e9307059fba4dc47ba8ad255d
https://github.com/gpac/gpac/issues/1177
CVE-2018-20761:
https://github.com/gpac/gpac/commit/35ab4475a7df9b2a4bcab235e379c0c3ec543658
https://github.com/gpac/gpac/issues/1186
CVE-2018-20762:
https://github.com/gpac/gpac/commit/35ab4475a7df9b2a4bcab235e379c0c3ec543658
https://github.com/gpac/gpac/issues/1187
CVE-2018-20763:
https://github.com/gpac/gpac/commit/1c449a34fe0b50aaffb881bfb9d7c5ab0bb18cdd
https://github.com/gpac/gpac/issues/1188
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: gpac
Source-Version: 0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1
We believe that the bug you reported is fixed in the latest version of
gpac, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 921...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Moritz Mühlenhoff <j...@debian.org> (supplier of updated gpac package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 04 Mar 2019 23:37:26 +0100
Source: gpac
Binary: gpac gpac-modules-base libgpac4 libgpac-dev
Architecture: source amd64
Version: 0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1
Distribution: stretch
Urgency: medium
Maintainer: Debian Multimedia Maintainers
<pkg-multimedia-maintain...@lists.alioth.debian.org>
Changed-By: Moritz Mühlenhoff <j...@debian.org>
Description:
gpac - GPAC Project on Advanced Content - utilities
gpac-modules-base - GPAC Project on Advanced Content - modules
libgpac-dev - GPAC Project on Advanced Content - development files
libgpac4 - GPAC Project on Advanced Content - shared libraries
Closes: 892526 902782 921969
Changes:
gpac (0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1) stretch; urgency=medium
.
* CVE-2018-7752 (Closes: #892526)
* CVE-2018-13005, CVE-2018-13006 (Closes: #902782)
* CVE-2018-20760, CVE-2018-20761, CVE-2018-20762, CVE-2018-20763
(Closes: #921969)
Checksums-Sha1:
d9ad2a1188e8a0869382bb7258ebf7ac2d390e1f 2737
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.dsc
b371bdae4e28a6aeb6e447b01bda6d8f36cf8524 41400
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.debian.tar.xz
8f349472681f342322dfa091895454ee90bac7d7 639722
gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
7de20395ac3fc384f03d25eb4a3ac0d28a69a321 984984
gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
f97981dc0d6105e446876d2f7a99e29e67a219ed 237932
gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
95b9daa52cb15806aba4c52608d53987deaef4eb 16020
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.buildinfo
f4d445e515c719c6f67e6b9dbc5e4c52763d1b32 273846
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
c92b1171cfb7e6064d3fdb5e96b55277e5c39234 2047964
libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
7eb430329a8700adc1bb5ca0370da55c181adc3a 5634398
libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
977b9c04622dc150233d200045bd1b36311e0793 1558558
libgpac4_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
Checksums-Sha256:
fbe4e36d3f551b475806bf91c2a9a12aa4c7038e5b1694fd29fc156887824e09 2737
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.dsc
b4fb5a1fdfa5f35b4ce1936d7fdc8c1f253cfebf72103303daef5f48b68b5fe4 41400
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.debian.tar.xz
17aec7178680f81c6ebab12d3386cb9f61305220a141bf794e6b7e5fd6e20850 639722
gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
350d1eb3e9f8d579e35294fd217f6480dfb1d4e56ec245d7cff62d87a0c5d0f6 984984
gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
46166b0ee751c80ab4e5bc58eda4ecee0fc1cf0a41f4a0fa40f3b5232c161659 237932
gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
46ed0ab9b40d608fb6f3d63dcddc6807f323be3b1aa9d603c0d31bef8cb738bd 16020
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.buildinfo
2174cf9d2f1f038f3337dcf8ce1d5ffd15dc1e3b86bf1802a785ada9c1cda7c1 273846
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
42121bc0a15c7795a61de5c7115eca3d316f419442eb663d1b2c1e8f33d8f228 2047964
libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
43ceb7c704b511309e7e72a8bda35b57ed331ed5d378eb140eff2c7006b06b76 5634398
libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
17dd7972b7c12613489ec5cafe7130223bfc7a6f8d3668e44712041488158d59 1558558
libgpac4_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
Files:
e0289d223063150f5d9633530424c734 2737 graphics optional
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.dsc
f0dbc7e0c602d580a97465323aa5b5f9 41400 graphics optional
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1.debian.tar.xz
af7c64bf3c6b60f8c0f0ac01f246a573 639722 debug extra
gpac-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
1b0b23a281d276552ca90a6f6dbbf870 984984 debug extra
gpac-modules-base-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
30a440af96e331f7bcc08ab5921c90bf 237932 graphics optional
gpac-modules-base_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
0ff5bad2fab3818b6792fcd2abfd6b60 16020 graphics optional
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.buildinfo
9e08f1282433d2b7a5e986c2cafeca86 273846 graphics optional
gpac_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
9f23bb52c6470e6822d5dc4270f68c15 2047964 libdevel optional
libgpac-dev_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
e0570c868f6b0bb92a0a4b62407e4e8e 5634398 debug extra
libgpac4-dbgsym_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
1e64579cf3dddb0082fdda9059a08280 1558558 libs optional
libgpac4_0.5.2-426-gc5ad4e4+dfsg5-3+deb9u1_amd64.deb
-----BEGIN PGP SIGNATURE-----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=RPZO
-----END PGP SIGNATURE-----
--- End Message ---