-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Mar 2019 09:25:20 +0100 Source: liblivemedia Binary: liblivemedia-dev libbasicusageenvironment1 libgroupsock8 liblivemedia57 libusageenvironment3 livemedia-utils Architecture: ppc64el Version: 2016.11.28-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-unicamp-01) Changed-By: Hugo Lefeuvre Description: libbasicusageenvironment1 - multimedia RTSP streaming library (BasicUsageEnvironment class) libgroupsock8 - multimedia RTSP streaming library (network interfaces and sockets liblivemedia-dev - multimedia RTSP streaming library (development files) liblivemedia57 - multimedia RTSP streaming library libusageenvironment3 - multimedia RTSP streaming library (UsageEnvironment classes) livemedia-utils - multimedia RTSP streaming tools Changes: liblivemedia (2016.11.28-1+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2019-6256: denial of service when processing get and post with identical x-session-cookie within the same tcp session. * CVE-2019-7314: use-after-free during RTSP stream termination. * CVE-2019-9215: malformed headers lead to invalid memory access in the parseAuthorizationHeader function. Checksums-Sha1: f998aa013a814e3da1c9b64cbbcc8901ec59424a 41954 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 09c875686454101005d945cd47b7b1a41c281fcc 22766 libbasicusageenvironment1_2016.11.28-1+deb9u2_ppc64el.deb 66116588a9cff345307eb2804d4bb7e88bd86b2d 63932 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 26b2575b6c0905a39192e1ff94e90d1a112dc0b8 28382 libgroupsock8_2016.11.28-1+deb9u2_ppc64el.deb 0226bbd4ab8800057988a7f5eb18c16a975c15ba 164706 liblivemedia-dev_2016.11.28-1+deb9u2_ppc64el.deb 7d63d6e0c2b71436b415a74241e2e274abfe30f5 950416 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 5a8a76f9516e74b2892821b3b3a53e23557e8e09 314100 liblivemedia57_2016.11.28-1+deb9u2_ppc64el.deb c6fbea08713109f81edec2e1840992ef846f78e2 8758 liblivemedia_2016.11.28-1+deb9u2_ppc64el.buildinfo 4b3c8d165957e109c0089ec02bcaa2d60b564721 9754 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 097016e08cb62b48e9a4f0ac909adbc7cfcd1518 12930 libusageenvironment3_2016.11.28-1+deb9u2_ppc64el.deb 5e1573548ee490c73cfb8a56c80b6f287f217b26 280410 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 0f6130155771841d600c6c973efb588f5b150612 71664 livemedia-utils_2016.11.28-1+deb9u2_ppc64el.deb Checksums-Sha256: c262039e7171266efc12d8854169aae895606a1f7be9e0351cd8aaf1db0a06bd 41954 libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 167c34be8acaf326ce325e789f92f41e9d91df7334d9bdc7c32c72bd42e68199 22766 libbasicusageenvironment1_2016.11.28-1+deb9u2_ppc64el.deb f72816ca5f614293b42577eb8d417924055868ae78372da26e2cd6e544c4cf28 63932 libgroupsock8-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 4b97b9471324e8b7cda1a6147902f125ce4ba763a3289152d97e098ac0160bc3 28382 libgroupsock8_2016.11.28-1+deb9u2_ppc64el.deb acdb376e975a99a7b4c81b13f53fe3c7ce6616fea5971f609eebadda1f31dc9f 164706 liblivemedia-dev_2016.11.28-1+deb9u2_ppc64el.deb b3d0410174603e2bd97f21d738164b8d01f620eb48bd311e6a859982f876a090 950416 liblivemedia57-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb e1586136f05fd163e85965537cde9d694f1485d9c85a10d3f89eb78afb9a0e5b 314100 liblivemedia57_2016.11.28-1+deb9u2_ppc64el.deb ddfb435f1ff1e0ff8bc32d0ddc0bb223b11e0f28fbf82f15d8105b68cd28150a 8758 liblivemedia_2016.11.28-1+deb9u2_ppc64el.buildinfo 0ffa2ed7650e46a2d1e934c7ce3242fd010ef86bc507b50d6fdb4db45903e598 9754 libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 7f1a86e53de48ca3a25c85488dfeb6589b4b70d71d9d4e14c6cfb89b88cff008 12930 libusageenvironment3_2016.11.28-1+deb9u2_ppc64el.deb 046fa25f4c85229d9b9af35947cbbbf1061aba9a772ca585616fc68c557ba10a 280410 livemedia-utils-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 72a2d3056aebaadc6b32663072767d3c319c1b16cd9eb5e9fdd5ccef5b656809 71664 livemedia-utils_2016.11.28-1+deb9u2_ppc64el.deb Files: c8cdef5a6c53f7a964d209344cb89fe7 41954 debug extra libbasicusageenvironment1-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 314671e7557f66072d46d5fa6c28ee40 22766 libs optional libbasicusageenvironment1_2016.11.28-1+deb9u2_ppc64el.deb 3ad7a10ffeea15b6f29a6ce775f7c354 63932 debug extra libgroupsock8-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb bccc192bedabb80a33cc5eac1e5f03f2 28382 libs optional libgroupsock8_2016.11.28-1+deb9u2_ppc64el.deb 05c5428086dac49eb997337f1ee38a0b 164706 libdevel optional liblivemedia-dev_2016.11.28-1+deb9u2_ppc64el.deb 7a6de8e3e1d50377c3377df52fae9163 950416 debug extra liblivemedia57-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb 459aabb5d37beff5463b2eaf4c36f10c 314100 libs optional liblivemedia57_2016.11.28-1+deb9u2_ppc64el.deb 3d8ff2c8116134788425af9784479e8b 8758 libs optional liblivemedia_2016.11.28-1+deb9u2_ppc64el.buildinfo bf127efcd0623a1928f51ddcb41a3597 9754 debug extra libusageenvironment3-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb f38285126d462d773588c7e3780c2da0 12930 libs optional libusageenvironment3_2016.11.28-1+deb9u2_ppc64el.deb 152489c7d2d815cf9233b3a76869a59b 280410 debug extra livemedia-utils-dbgsym_2016.11.28-1+deb9u2_ppc64el.deb fc0000c0f2a0a441d4f9590d3d20465b 71664 net optional livemedia-utils_2016.11.28-1+deb9u2_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETZH/2HPBdnZLAIbGrG4Nu04l2TMFAlyLtD0ACgkQrG4Nu04l 2TOF4Q//b4zGabeaKC1VjC4nNoOypjqv5gMCKASs7qm5QX0CGmze90/1c4cJ6SrK sL/yyPBwDefbG5LP4rVmDRRw+/lvK+2J4hWTbYmbcy0enxSz+ywnXqMJD2TLoZQD K5hp1fOVl+bJLzkHarrfuAjKz8Gy5bcistQF/Xnji78amCYZ26WaB9LFMaTRWdwh ao9rPXTY7kAfSpwlMYYbOKjhT9m9kQiXgWmSzq619KvNgl89l2mmOWto2O97kmvD fr9rXwhjHkUDy8Ql8QbanunG5AKbdPJ6dYK6kDPeACrhP/a7hnh1+HPGIuHQnC4S NX67hA2FPoP7iQKWQCjoY1Sv/U5hEJ7ILcsCk6LWnGWfLfDuRt4qmsaQt82myXCu aIJ4OtxFaSOqVVKgb+WatOv8M4v55QmkTyVtX6946muOBmeHHNptmRmh6od/wL2j bkXfQf4BWwRYx+0BdrC+XMw9wjYH5YYyEHeWQ9FweVPEtTsAnKwtoHuYGtmLUVww xZNsnMkuEUJHpxMpefqNeMv4DyGPAsaVz/+/Gtj/FrFh6bLAw4Vb4xoyiYKVdKPO DSPtT4IDCF72n4rTlXOwvfpQ1rhP3jPViy9IaiqQvIfnh/bLKlvseV0Api2msJnq TPW8DtlDDqQnBqPNSuhZkKM9XX9EyiXWrXeZ3625EgY6XaDcVds= =pMRT -----END PGP SIGNATURE-----