-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Mar 2019 09:25:20 +0100 Source: liblivemedia Binary: liblivemedia-dev libbasicusageenvironment1 libgroupsock8 liblivemedia57 libusageenvironment3 livemedia-utils Architecture: mips64el Version: 2016.11.28-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-manda-02) Changed-By: Hugo Lefeuvre Description: libbasicusageenvironment1 - multimedia RTSP streaming library (BasicUsageEnvironment class) libgroupsock8 - multimedia RTSP streaming library (network interfaces and sockets liblivemedia-dev - multimedia RTSP streaming library (development files) liblivemedia57 - multimedia RTSP streaming library libusageenvironment3 - multimedia RTSP streaming library (UsageEnvironment classes) livemedia-utils - multimedia RTSP streaming tools Changes: liblivemedia (2016.11.28-1+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2019-6256: denial of service when processing get and post with identical x-session-cookie within the same tcp session. * CVE-2019-7314: use-after-free during RTSP stream termination. * CVE-2019-9215: malformed headers lead to invalid memory access in the parseAuthorizationHeader function. Checksums-Sha1: 29c4243d82844492952990199b4c211e7735e904 42152 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 6c51dab7c3a235d53bbe6bae2492aeaaf7c25d2e 22406 libbasicusageenvironment1_2016.11.28-1+deb9u2_mips64el.deb 13621d13894e362dc4739596335b4a9076888207 64568 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips64el.deb ff139716e14390b0b4a09410fe6b1fdd71aa3be1 27624 libgroupsock8_2016.11.28-1+deb9u2_mips64el.deb 9ac43e641129ab7681bf44ed5a09657536b03133 164714 liblivemedia-dev_2016.11.28-1+deb9u2_mips64el.deb 07693505e1a0e25f8e9acc05247f864ad2c44ddd 956972 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 995de839a1f1546451985c14931c58be96a21a64 300288 liblivemedia57_2016.11.28-1+deb9u2_mips64el.deb 5d31dffb23f13070d4e128c1a595e849fae98663 8700 liblivemedia_2016.11.28-1+deb9u2_mips64el.buildinfo b56c52a5e74f8b2c047d3ed4ed03a6c786eca0e6 9894 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 3f3a03231ab68b25ccad632bc3bfde604d111a03 12738 libusageenvironment3_2016.11.28-1+deb9u2_mips64el.deb f79d73a50d572e3ba0c587516844a2e31cfc7189 282820 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 16d60b348d6fc8f100d45bc5cd0fb64f9693310f 80530 livemedia-utils_2016.11.28-1+deb9u2_mips64el.deb Checksums-Sha256: f4ae542890ac6d9b42e4f0c40103272139a73b3df0b2d7e0151f1c69af8d7aef 42152 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips64el.deb f3c6d741199e9bb0c6d247e826ccce5b975f560df0f24644f84014c5e31431d3 22406 libbasicusageenvironment1_2016.11.28-1+deb9u2_mips64el.deb e138459a3c3e9bc72481c6776d20382eec4f5f47b4ff6815f3b79189f9a1b5d6 64568 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 343c91c010c8428b5fd83635782d8179670ff8f0ec2fb3b24045fb7fa3d903a2 27624 libgroupsock8_2016.11.28-1+deb9u2_mips64el.deb 60af2f8007e98b0b5d21c68429218bc889b654d1c98876bcfa520b2ea17dde35 164714 liblivemedia-dev_2016.11.28-1+deb9u2_mips64el.deb 90b67d92081cdc0c28013cecb69a867bd94c7b3eef4e168f2c7692ec61aab89a 956972 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 5d614b75c66cc571cae333b16b401d762b6f03d083cd8c88c584bb6fab05906a 300288 liblivemedia57_2016.11.28-1+deb9u2_mips64el.deb 7cef86ea61ec4d39c930119257b9cbfd572965b00dee4426b7252bdea7ed1701 8700 liblivemedia_2016.11.28-1+deb9u2_mips64el.buildinfo bca60f4af5ecfd08924fd0967e0110252b9dd24a3caacfb23a43c74c3c2d51e4 9894 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 20b81b6d89c8a3aad524271fd37ccb301c33aa84ee400870568153e6f70b1230 12738 libusageenvironment3_2016.11.28-1+deb9u2_mips64el.deb f047236e92c7d718389fdd0622731297fea9ec2893fbf2c40712588025f4c749 282820 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 6d21f4c826c26d73c5560830c4ed7737d6d51a52864fc8ef69d14096e67972dc 80530 livemedia-utils_2016.11.28-1+deb9u2_mips64el.deb Files: 5a71b9850831ac763c94bf4e47b9b545 42152 debug extra libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 755b54ca74994f19aa4eaa2f708bb497 22406 libs optional libbasicusageenvironment1_2016.11.28-1+deb9u2_mips64el.deb 6e6db72bdc5df7c640a4bad7513fa663 64568 debug extra libgroupsock8-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 0e4be456a69b5ad32744e76642449b16 27624 libs optional libgroupsock8_2016.11.28-1+deb9u2_mips64el.deb 12ca82a1872a26da29cb129766545c9c 164714 libdevel optional liblivemedia-dev_2016.11.28-1+deb9u2_mips64el.deb 556feb022981a94d89fda55600720ab9 956972 debug extra liblivemedia57-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 7b7caa9de226c4b5eaf65b1f96b4c5ba 300288 libs optional liblivemedia57_2016.11.28-1+deb9u2_mips64el.deb 3b0639f520582db24012fd2d40da39c8 8700 libs optional liblivemedia_2016.11.28-1+deb9u2_mips64el.buildinfo 9e1d679ba91784319b9206e24ab8f1db 9894 debug extra libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_mips64el.deb f97403ca98eefcb1c4e4a5695c1a72ed 12738 libs optional libusageenvironment3_2016.11.28-1+deb9u2_mips64el.deb d01685fa220375a2b4fafd33b79d1f10 282820 debug extra livemedia-utils-dbgsym_2016.11.28-1+deb9u2_mips64el.deb 76ac7f23a8c1c69cf89c719ae495a3fe 80530 net optional livemedia-utils_2016.11.28-1+deb9u2_mips64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEjDK6FYtKsZh7vfAcXSpwKOqSMnQFAlyLtlsACgkQXSpwKOqS MnQi3hAAkJZEFO+bn3+lbDsdU3JFcIZrcg70LpjC1u26aoidsInIO1DvxFjLEiVs AhdggA05jsleSLdSPVoW4s/Iz85IznDnhnpsaWS2r+hmIHeqfvwyNKP3+c99l4xZ dRUZFhidNOR9emjLAjGx4B9FAT12qnornVn1QVaQJZOaQ6tZsbPFmwK8erFntis0 psCsalRU/1BJRGtlc3c9Wnimj+uTOkxKgw3Z6xJIx0uu761hWLaz0oMxxKCHR/wZ XxVRGMFRmPKDhQbMxhSXEY9pNtAg6/SQfU1NTRQ9GGGRs2Q89ZK7ygdjPweGKHsK CHJzAJAkxzxFDXX0fOMT4PKIm93OkOEk2m7tDKY8ubCtPqYODrUHhQ4wbCzuagxB 6pA9tGxUliDbTjqd4T8EM2Fb7qjCoyMZg3c8+B0qURuryrzQqUNr+VacUQByltCQ 6FLBXCpJnOn9MyHZOWdwxMHneA6zD/KfLa5F6r1w+uLdJ/ebJBjR1ZkhUmIRO9kA Pp7Uk1eakmA7YlezvFaSY56f2G5dottNO5gpT8zjyVvzGSztlmIwbBgmbQGBMq25 AwD37RKkvOjUlfrEJkbDm3hoQTVZjxYDO429/aKEvX1jL+PMBr7Z0huoo2Lz1Hn1 44GyIN/iIX/qgzAErZCAhajsPpXUAvuCcMkUltOawS/0Q+bXkZg= =68M0 -----END PGP SIGNATURE-----