lp:ubuntu/gutsy-updates/vlc

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/gutsy-updates/vlc
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

32. By Emanuele Gentili

* SECURITY UPDATE: (LP: #207284)
 + debian/patches/031_CVE-2008-1489.diff
  - Integer overflow in the MP4_ReadBox_rdrf function in libmp4.c allows
    remote attackers to cause a denial of service (crash) and possibly
    execute arbitrary code via a crafted MP4 RDRF box that triggers a
    heap-based buffer overflow.

* References
 + http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1489
 + http://trac.videolan.org/vlc/changeset/09572892df7e72c0d4e598c0b5e076cf330d8b0a

31. By Emanuele Gentili

* SECURITY UPDATE:
  - debian/patches/031_CVE-2008-0984.diff (LP: #195949)
   + VLC media player's MPEG-4 file format parser (a.k.a. the MP4 demuxer)
     suffers from an arbitrary memory overwrite vulnerability when using
     crash the player instance.

* References
  - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0984
  - http://www.videolan.org/security/sa0802.html

30. By Cesare Tirabassi

* Add patch 030_fix_exec_field_code:
  - fix opening multiple files leads to multiple instances (LP: #124712)

29. By William Grant

* Move firefox plugin into /usr/lib/firefox. (LP: #99810)
* Don't attempt to install a symlink for firefox to vlcintf.xpt - it doesn't
  exist any more.

28. By Vincent Legout

Fix typo error in .desktop file (LP: #131691)

27. By Hilario J. Montoliu (hjmf)

debian/control: added Xb-Npp-xxx tags accordingly to "firefox distro
add-on suport" spec,
(https://blueprints.launchpad.net/ubuntu/+spec/firefox-distro-addon-support)

26. By Daniel T Chen

* SECURITY UPDATE: Format string injection in multiple plugins could
  lead to arbitrary code execution and/or DoS.
* New upstream security and bugfix release, 0.8.6c (LP: #121511).
* References
  CVE-2007-0256
  CVE-2007-3316
* debian/patches/: Remove 020_flac.diff and 030_CVE-2007-0017.diff
  (subsumed by new upstream release).
* debian/vlc-nox.install: Add libtelx_plugin.so (fixes FTBFS).

25. By Matti Lindell <email address hidden>

* debian/patches/020_flac.diff:
 - Patch from upstream trunk to fix FTBFS with libflac8
   (http://trac.videolan.org/vlc/changeset/18855)

24. By Luke Yelavich

debian/control: Revert back to building against libwxgtk2.6-dev
(Closes LP: #91248)

23. By Daniel T Chen

debian/control: Work around LP #91086.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/vlc
This branch contains Public information 
Everyone can see this information.

Subscribers