nion at alioth.debian.org
2008-Dec-21 14:49 UTC
[Secure-testing-commits] r10764 - data/CVE
Author: nion Date: 2008-12-21 14:49:05 +0000 (Sun, 21 Dec 2008) New Revision: 10764 Modified: data/CVE/list Log: yet another xine issue, one left Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-21 14:28:27 UTC (rev 10763) +++ data/CVE/list 2008-12-21 14:49:05 UTC (rev 10764) @@ -1054,7 +1054,7 @@ CVE-2008-5240 (xine-lib 1.1.12, and other 1.1.15 and earlier versions, relies on an ...) - xine-lib <unfixed> (low; bug #509352) CVE-2008-5239 (xine-lib 1.1.12, and other 1.1.15 and earlier versions, does not ...) - TODO: check + - xine-lib <unfixed> (medium; bug #509353) CVE-2008-5238 (Integer overflow in the real_parse_mdpr function in demux_real.c in ...) - xine-lib 1.1.14-3 (low) NOTE: code execution shouldn''t work here as if 0xff will be extended to 0xffffffff