-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Mar 2019 09:25:20 +0100 Source: liblivemedia Binary: liblivemedia-dev libbasicusageenvironment1 libgroupsock8 liblivemedia57 libusageenvironment3 livemedia-utils Architecture: mipsel Version: 2016.11.28-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-sil-01) Changed-By: Hugo Lefeuvre Description: libbasicusageenvironment1 - multimedia RTSP streaming library (BasicUsageEnvironment class) libgroupsock8 - multimedia RTSP streaming library (network interfaces and sockets liblivemedia-dev - multimedia RTSP streaming library (development files) liblivemedia57 - multimedia RTSP streaming library libusageenvironment3 - multimedia RTSP streaming library (UsageEnvironment classes) livemedia-utils - multimedia RTSP streaming tools Changes: liblivemedia (2016.11.28-1+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2019-6256: denial of service when processing get and post with identical x-session-cookie within the same tcp session. * CVE-2019-7314: use-after-free during RTSP stream termination. * CVE-2019-9215: malformed headers lead to invalid memory access in the parseAuthorizationHeader function. Checksums-Sha1: c3c920cd7f84e80186192bbcdf509a75017dacd0 40668 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 3d08e3b6c07e0c9ea7adcda8c6784dca2e6eacf5 22058 libbasicusageenvironment1_2016.11.28-1+deb9u2_mipsel.deb 7513da11f82d22831fc4ee66c31f559bd4204356 62126 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mipsel.deb c8e60f6d9318aec151dfa4efb3a70be49b273afb 27372 libgroupsock8_2016.11.28-1+deb9u2_mipsel.deb 34d46cb23c7432981a12e5e1fc7e58a31ef92665 164698 liblivemedia-dev_2016.11.28-1+deb9u2_mipsel.deb 7cd8427a93321cc04ed301d5abe80a691df8bd72 912426 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mipsel.deb e1347dfcb77e20017d28ad88d10a006fcfd96027 298894 liblivemedia57_2016.11.28-1+deb9u2_mipsel.deb 5e79dffd6ded74c9a0a46e73a2f062b74a316b83 8630 liblivemedia_2016.11.28-1+deb9u2_mipsel.buildinfo 650667518e1b42709788a1554b0faa7541c3b107 9662 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mipsel.deb ac579bbe3c61c03ec71b94205dcb3ef0975d3fe8 12542 libusageenvironment3_2016.11.28-1+deb9u2_mipsel.deb 73da7ff06e49f209d1d46a8b5bb8d23beb243250 263142 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 6d1c693947217e144c2186dc6020d9f9c99a0384 79242 livemedia-utils_2016.11.28-1+deb9u2_mipsel.deb Checksums-Sha256: 933a5e9f6ebcbfdbe1da2996ebdd8d4ca535ecf305e7ee8738629383910f3338 40668 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 46b4cdaa69c021d5f549a64579bfe2e4d0c87659b9ca69677ea3b03254edb4a6 22058 libbasicusageenvironment1_2016.11.28-1+deb9u2_mipsel.deb 93d3e9d7c2f12da7de54a89c708f34f944c51f63680c86d53373be7ae8cb3d51 62126 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 9c17794d0104da9c9ee4cf9284244408e8090f8d9b300f1bacfebd36018da897 27372 libgroupsock8_2016.11.28-1+deb9u2_mipsel.deb 70dc9dd7998e48302e288cfcbdb709957ca6bc704e97edf755d65e335bbc3a19 164698 liblivemedia-dev_2016.11.28-1+deb9u2_mipsel.deb fe432fad3d1e47c21f4800db81884e350d5aa5a0df14e7830ae9398e2520dd33 912426 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 6f0e0d2ffd777a1302a5936e2ba87f5dee1bac3737f7103d78ec63e8a9d6d67a 298894 liblivemedia57_2016.11.28-1+deb9u2_mipsel.deb 5d21878d308f1cfee3e860225f320f931c87dae2049d231d6398752763255127 8630 liblivemedia_2016.11.28-1+deb9u2_mipsel.buildinfo 044a9e38cd7b4b7c28caec9c7fe36a0ef4ca23bcfc6634b3e456e664e0b7f71f 9662 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mipsel.deb c151c95b830ca22451b0c79dcfaf24a5e0ad4a0155ee21cc89f25a77cf197a41 12542 libusageenvironment3_2016.11.28-1+deb9u2_mipsel.deb dd5f20091ce0923d4a3a2a6a3c26024d7b334e6d754f703b151e4cddc64c1537 263142 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 6e219fa8724582c01ca8ea44f1488b7be41fc50d251d0d6a16ef0d043017f439 79242 livemedia-utils_2016.11.28-1+deb9u2_mipsel.deb Files: 9abc1dad92a8c6e771cff179b3be43bb 40668 debug extra libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 2ddfcd0a2aa2483820ba740219cf96c2 22058 libs optional libbasicusageenvironment1_2016.11.28-1+deb9u2_mipsel.deb 7831e3996021eea4d64aed367ea8f831 62126 debug extra libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 19c859d699b31e0fd3a5e1bb9d9d9d70 27372 libs optional libgroupsock8_2016.11.28-1+deb9u2_mipsel.deb e82caf0cea9f7a49059de0e98c8dc6de 164698 libdevel optional liblivemedia-dev_2016.11.28-1+deb9u2_mipsel.deb 17e8e728f2eed3914ec3f532bb45e1c3 912426 debug extra liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 3c2cf9c33f1c008ac363a66fa23856f2 298894 libs optional liblivemedia57_2016.11.28-1+deb9u2_mipsel.deb d0c9e57eb4aa3aa4ff070dd99dd364c3 8630 libs optional liblivemedia_2016.11.28-1+deb9u2_mipsel.buildinfo 8a8a6f4651389bcec6fe4573df8847c4 9662 debug extra libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mipsel.deb ac4552e43ae0fefddd7be1623966a825 12542 libs optional libusageenvironment3_2016.11.28-1+deb9u2_mipsel.deb 61bf9ee31f5024d9867a4ac746f94d19 263142 debug extra livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mipsel.deb 5d4929e9a7eadba2f795248cb5fc8fb1 79242 net optional livemedia-utils_2016.11.28-1+deb9u2_mipsel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXEgKVC+AseUOj2KzDiVmrgr4n54FAlyLtakACgkQDiVmrgr4 n56kyg//dkosyosjH0xdNS8leDn4h2M5DizsHMFxKSYHJVik3Umeoxc2cPlqiOpG yypReS7mR2mEOsnPtHuJdWUwE5Z/41RKK9N2azi1186usHoKPrSsOT3MrQHcWjJ0 FRuls69cWQeodm3SXc7pOFLppxu9vDxDBF43catL+n5F9CDHsbqGu4xjpGX2AjN3 9oR9NkB0AANgSLchn51FcvgHG2ZOtvZD0U7UbvEIXlFiXwFl3TnpqV/e+ajCBv57 GXkHpCRWsExsEUTkmKFUJiiZzy1P4AvbIIT+zwsLxcMy6LOkpHXMpfd6DrLWrdvF mCOb3Y5EUji88JcUxSYOiQuF3eSX7gPUR+W2SzA8x5+T1fxpY8SR+H64POgpvCcF eyx6o66lP2nTxNXNrE1xmiaNNx43j4NH0Ida4v0zfY9P9TJb7qSknTNLhk1DGuox eyPald0Hic8yBba3QFnJ0ZamDNUmGLWUuxQ6iByExDWYpC5MLNRwuwDS5vSyj9j7 x39oG+8eSE2kPZlRrZVnQr2HE0hOy6UvfR1DscWyRt7SYYlI9u936Q950ELta/J4 lqJ0CGWNJJFoSVimo296KtzAuhAhetYEj0NFvcrJ4IIAkcvPjEbs5UtAgCNXdPwf g/zNB9axG3n4u6j9jGs+mxxdSDR/ijZu/rOOjhmeKasm8UyuT3c= =ux9y -----END PGP SIGNATURE-----