Login


 
Newsletter
Werbung
Sicherheit: Mehrere Probleme in MediaTomb
Aktuelle Meldungen Distributionen
Name: Mehrere Probleme in MediaTomb
ID: FEDORA-2013-2352
Distribution: Fedora
Plattformen: Fedora 17
Datum: Do, 21. Februar 2013, 09:03
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5958
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5959
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5960
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5961
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5962
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5963
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5964
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5965

Originalnachricht

Name        : mediatomb
Product : Fedora 17
Version : 0.12.1
Release : 23.fc17
URL : http://mediatomb.cc
Summary : MediaTomb - UPnP AV Mediaserver for Linux
Description :
MediaTomb is an open source (GPL) UPnP MediaServer with a nice web user
interface, it allows you to stream your digital media through your home
network and listen to/watch it on a variety of UPnP compatible devices.

MediaTomb implements the UPnP MediaServer V 1.0 specification that can
be found on http://www.upnp.org/.

-------------------------------------------------------------------------------
-
Update Information:

Unbundle libupnp.
-------------------------------------------------------------------------------
-
ChangeLog:

* Wed Jan 30 2013 Jon Ciesla <limburgher@gmail.com> - 0.12.1-23
- Unbundle libupnp.
* Tue Jan 15 2013 Jon Ciesla <limburgher@gmail.com> - 0.12.1-22
- Patch to fix crash, BZ 783367.
- autoconfig fixes.
* Mon Dec 3 2012 Jon Ciesla <limburgher@gmail.com> - 0.12.1-21
- Fix unit file typo.
* Tue Oct 30 2012 Jon Ciesla <limburgher@gmail.com> - 0.12.1-20
- Fix most hardcoding in unit file.
* Sun Sep 16 2012 David Jaša <jasa.david@gmail.com> - 0.12.1-19
- added patch to enable subtitles support
- Committed by Jon Ciesla <limburgher@gmail.com>
* Mon Sep 3 2012 David Jaša <djasa@redhat.com> - 0.12.1-18
- cleaned up conditionals handling Fedora <= 13
- added missing comma before flac-devel in BuildRequires
- made .spec compatible with RHEL6 + EPEL
- Committed by Jon Ciesla <limburgher@gmail.com>
* Fri Jul 20 2012 Fedora Release Engineering
<rel-eng@lists.fedoraproject.org> - 0.12.1-17
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Wed Feb 15 2012 Jon Ciesla <limburgher@gmail.com> - 0.12.1-16
- Migrate to systemd, BZ 789767.
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #883790 - CVE-2012-5958 CVE-2012-5959 CVE-2012-5960 CVE-2012-5961
CVE-2012-5962 CVE-2012-5963 CVE-2012-5964 CVE-2012-5965 libupnp: Multiple stack-based buffer overflows in unique_service_name() by processing specially-crafted SSDP request (VU#922681)
https://bugzilla.redhat.com/show_bug.cgi?id=883790
-------------------------------------------------------------------------------
-

This update can be installed with the "yum" update program. Use
su -c 'yum update mediatomb' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce
Pro-Linux
Frohe Weihnachten Fest!
Neue Nachrichten
Werbung