[gstreamer-bugs] [Bug 383009] New: CVE-2006-4800 4xm buffer overflow

GStreamer (bugzilla.gnome.org) bugzilla-daemon at bugzilla.gnome.org
Wed Dec 6 06:18:18 PST 2006


Do not reply to this via email (we are currently unable to handle email
responses and they get discarded).  You can add comments to this bug at
http://bugzilla.gnome.org/show_bug.cgi?id=383009

  GStreamer | gst-ffmpeg | Ver: 0.10.x

           Summary: CVE-2006-4800 4xm buffer overflow
           Product: GStreamer
           Version: 0.10.x
          Platform: Other
        OS/Version: Linux
            Status: UNCONFIRMED
          Keywords: security
          Severity: critical
          Priority: Normal
         Component: gst-ffmpeg
        AssignedTo: gstreamer-bugs at lists.sourceforge.net
        ReportedBy: lool+gnome at via.ecp.fr
         QAContact: gstreamer-bugs at lists.sourceforge.net
     GNOME version: Unspecified
   GNOME milestone: Unspecified


Hi,

CVE-2006-4800 
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4800

Debian patch for gst-ffmpeg 0.10:
http://svn.debian.org/wsvn/pkg-gstreamer/unstable/gst-ffmpeg/debian/patches/30_CVE-2006-4800-4xm-buffer-overflow.patch?op=file&rev=0&sc=1

I suggest you roll a 0.8 tarball as well (we still ship that one in Debian).

Bye,


-- 
Configure bugmail: http://bugzilla.gnome.org/userprefs.cgi?tab=email




More information about the Gstreamer-bugs mailing list