-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Mar 2019 09:25:20 +0100 Source: liblivemedia Binary: liblivemedia-dev libbasicusageenvironment1 libgroupsock8 liblivemedia57 libusageenvironment3 livemedia-utils Architecture: mips Version: 2016.11.28-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: mips Build Daemon (mips-aql-02) Changed-By: Hugo Lefeuvre Description: libbasicusageenvironment1 - multimedia RTSP streaming library (BasicUsageEnvironment class) libgroupsock8 - multimedia RTSP streaming library (network interfaces and sockets liblivemedia-dev - multimedia RTSP streaming library (development files) liblivemedia57 - multimedia RTSP streaming library libusageenvironment3 - multimedia RTSP streaming library (UsageEnvironment classes) livemedia-utils - multimedia RTSP streaming tools Changes: liblivemedia (2016.11.28-1+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2019-6256: denial of service when processing get and post with identical x-session-cookie within the same tcp session. * CVE-2019-7314: use-after-free during RTSP stream termination. * CVE-2019-9215: malformed headers lead to invalid memory access in the parseAuthorizationHeader function. Checksums-Sha1: 1580f33378a314cd95e5ed6f06e8046bc6e0e6ce 41444 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips.deb 50f6eb04db2f8584c1d2d7f2363e0c8a753a22ac 21888 libbasicusageenvironment1_2016.11.28-1+deb9u2_mips.deb b6968f937f3587d6130f7188af527ed116e4062c 64320 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips.deb c9a2490be92ef269a087dc05585bbc2bb6233240 27074 libgroupsock8_2016.11.28-1+deb9u2_mips.deb f43f64ae818353482629b4f8446085a72e18730a 164692 liblivemedia-dev_2016.11.28-1+deb9u2_mips.deb 0b279c3c04f260d9dfe107d49635d39c32898155 940058 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips.deb 93e3b849b2ee9a9dfd4e5b8a24b01fde493b8710 292964 liblivemedia57_2016.11.28-1+deb9u2_mips.deb 1bc6d9f35be6dfff020bafc250493e92f2d3d3b1 8560 liblivemedia_2016.11.28-1+deb9u2_mips.buildinfo 9dabc924858f5e3782f88b668e09e13b74a4735c 9792 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips.deb 45f5c4747a68d41c55d02db29fbea5d8e5b5a136 12508 libusageenvironment3_2016.11.28-1+deb9u2_mips.deb 5f1b1ffe30dea4065e11d345b7b4d8c18a60afbf 266632 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips.deb 4dd662bdf16f5b5099f13544aff7525ab53be771 77664 livemedia-utils_2016.11.28-1+deb9u2_mips.deb Checksums-Sha256: c3e5cb76171304d28ca56eaf9d78a016d7172290fb7b15a96460b96a79655173 41444 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips.deb 3431e815dc21c8ba9be4cabfd82b839b38674ab96e8558c6f5bc0751d404d587 21888 libbasicusageenvironment1_2016.11.28-1+deb9u2_mips.deb 25c253a991934932db53ddef61eae8190d963a44f4b712e447dd8fd08569ad88 64320 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips.deb 24a3424a7f46d2954770ab02d2cc83684dc9761fdec5b404d186f1c930248cd7 27074 libgroupsock8_2016.11.28-1+deb9u2_mips.deb 3131cc382b08f6872be7aabb89e66cb60a2ad546b3fd1e233196a5846913c6fc 164692 liblivemedia-dev_2016.11.28-1+deb9u2_mips.deb 6f48cfa6da96ea85e7a38a72d7edfc6bc7d1d884f40ea37540e4ee6568d0b4de 940058 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips.deb b6b2a0bd02b3b0776ed286af310db4b018f981d3a0ec52f32a9b84626cb6773f 292964 liblivemedia57_2016.11.28-1+deb9u2_mips.deb c899cf860ec66f1c8c6c91009aa82d9d4b9d957f9aba66397c67473dfef4adfa 8560 liblivemedia_2016.11.28-1+deb9u2_mips.buildinfo 1c343fa6ccf3034aba498e9466240e5a85ab118923cd362e16da94922fd462ae 9792 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips.deb 47e34f31be19ea5226bbae5b199f9bc3d46e422885f2e5995223992d1f423c9a 12508 libusageenvironment3_2016.11.28-1+deb9u2_mips.deb 6a5cd1d7137cdc2df920c52b45c809679cad8ba426b7beb2d9cddafcf14aa008 266632 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips.deb 49ca0b3d8086f7674ad259adc8bfe3c67a07ca5e77c7acdd860468973be42895 77664 livemedia-utils_2016.11.28-1+deb9u2_mips.deb Files: 7d877cedd7b02a0dd368badb34afba4f 41444 debug extra libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips.deb f1fb3beb0afd4c434bc245ec32420aa4 21888 libs optional libbasicusageenvironment1_2016.11.28-1+deb9u2_mips.deb 0e329bd7bb4780fd8f455906b8aeaa4a 64320 debug extra libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips.deb 3d919d02e84d62448c35090957f4a248 27074 libs optional libgroupsock8_2016.11.28-1+deb9u2_mips.deb 79985a6c1a269c29294b543f8a05093b 164692 libdevel optional liblivemedia-dev_2016.11.28-1+deb9u2_mips.deb 5c8d7017bf4c3c3f61d0d87b47f206c2 940058 debug extra liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips.deb 5675ce7df4528c12cb5e8bbe171974e8 292964 libs optional liblivemedia57_2016.11.28-1+deb9u2_mips.deb 826dcabdf314257f67ee5d3507a085b9 8560 libs optional liblivemedia_2016.11.28-1+deb9u2_mips.buildinfo 4632f0cc61f2c0bcfc75906f55813902 9792 debug extra libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips.deb 3e2e616e75ad2e3df22971a6bc3ae95f 12508 libs optional libusageenvironment3_2016.11.28-1+deb9u2_mips.deb f56db8aaa8576ee436f069dd52a9e72f 266632 debug extra livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips.deb aa2b86f5ee75af57d02c0d2006465c30 77664 net optional livemedia-utils_2016.11.28-1+deb9u2_mips.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETJlW0V2MC56jFZJSCsVU0NoNrWYFAlyLuKoACgkQCsVU0NoN rWYw1Q//dcTmSVfQ72iQ9bljBCl54MACw/76qJcg3dabMUzDhdiWjfkWIXKTfp8l bLZ7eJ47mMjIUYxoVcPKPOUFRDSW/yqOAwad5+CZBkBSi2ALyiWa6lKSjR8UBFot a1vAKiiixBIlo3TJp2cx3vN8+ESK6dBvsMlHPnVjxiNsq3V6nEPqFi7Ziam4/Y8G SH0jvtkyfiPHI1kguYzAJlDFrTww6ZzXIzFBUp8j6yLcQlNY+v7U2MHiCjqMT05l e+efmzQx4HEwIIzWJvJ/ZU1fQSYqpYJiceL+jlsW1MZHWxjUv0jVYmCZY3Lygxba mZtmWI0RVrIhs4aOHoiBCPyx2DP6Wg1kv43mmAnTg0p9Uu/ejC89SU3FptFQjK0A gcR4mpS818+96sElUCFHcRPGqDFlG2bfR/L99DB9EbpVubVcAse9Tt0+IAZHDUAo muWwUjubPRlOdF2dOiByoi2XGBuergMe25JUaSXk/S1yB47C36JDbIccN9sSQOL1 ud0pIeArSn+RC/aP0PcU9KRKHIvrDCySejLV6uvPESIzrnvUyY46CO1gV61PtuN7 dUJHN4C6jOZ3s+BwdT5Xu72FSk6eH9AqZbc/D3Krt/dfzqgT7CfgeHYoUc+4kx8D PW+gdhjVlgoaCiwbm+XjilXaSlTy5JxohKcHzpU8kXc0SIz2lEA= =0Lo6 -----END PGP SIGNATURE-----