Bug#458318: Three security issues in vlc

2008-01-03 Thread Nico Golde
Hi Christophe, * Christophe Mutricy <[EMAIL PROTECTED]> [2008-01-03 21:37]: > > retitle 458318 "Five security issues in vlc" > > Please don't group the bugs but create new ones. > > The BTS doesn't know about "fix #1242 but only the first bit" Since there are patches for all I don't think an inc

Bug#458318: Three security issues in vlc

2008-01-03 Thread Christophe Mutricy
> According to > http://www.securityfocus.com/archive/1/485488/30/0/threaded , there > are two more unfixed security issues in vlc: > > A] buffer-overflow in the handling of the subtitles Fixed upstream in http://trac.videolan.org/vlc/changeset/23855 > B] format string in the web interface Fixed

Bug#458318: Three security issues in vlc

2008-01-03 Thread Christophe Mutricy
> retitle 458318 "Five security issues in vlc" Please don't group the bugs but create new ones. The BTS doesn't know about "fix #1242 but only the first bit" Thanks -- Xtophe -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Processed: Re: Bug#458318: Three security issues in vlc

2008-01-03 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 458318 + patch Bug#458318: "Four security issues in vlc" Tags were: security Tags added: patch > thanks Stopping processing here. Please contact me if you need assistance. Debian bug tracking system administrator (administrator, Debian Bugs data

Bug#458318: Three security issues in vlc

2008-01-03 Thread Nico Golde
tags 458318 + patch thanks Hi, * Nico Golde <[EMAIL PROTECTED]> [2008-01-03 20:46]: > * Stefan Fritsch <[EMAIL PROTECTED]> [2007-12-30 12:56]: > [...] > > According to http://www.securityfocus.com/archive/1/485488/30/0/threaded , > > there > > are two more unfixed security issues in vlc: > > >

Bug#458318: Three security issues in vlc

2008-01-03 Thread Nico Golde
retitle 458318 "Four security issues in vlc" thanks Hi Stefan, * Stefan Fritsch <[EMAIL PROTECTED]> [2007-12-30 12:56]: > http://mailman.videolan.org/pipermail/vlc-devel/2007-December/037726.html > https://trac.videolan.org/vlc/ticket/1371 > > describe a security issue which allows to write to ar

Bug#458318: Three security issues in vlc

2008-01-03 Thread Nico Golde
retitle 458318 "Five security issues in vlc" thanks Hi Stefan, * Stefan Fritsch <[EMAIL PROTECTED]> [2007-12-30 12:56]: [...] > According to http://www.securityfocus.com/archive/1/485488/30/0/threaded , > there > are two more unfixed security issues in vlc: > > A] buffer-overflow in the handlin

Processed: Re: Bug#458318: Three security issues in vlc

2008-01-03 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > retitle 458318 "Four security issues in vlc" Bug#458318: Three security issues in vlc Changed Bug title to `"Four security issues in vlc"' from `Three security issues in vlc'. > thanks Stopping processing

Bug#458318: Three security issues in vlc

2007-12-30 Thread Stefan Fritsch
Package: vlc Version: 0.8.6.c-4 Severity: grave Tags: security Justification: user security hole These pages http://mailman.videolan.org/pipermail/vlc-devel/2007-December/037726.html https://trac.videolan.org/vlc/ticket/1371 describe a security issue which allows to write to arbitrary files wi