[SCM] vlc/master: Finalize changelog

sramacher at users.alioth.debian.org sramacher at users.alioth.debian.org
Wed Jan 21 22:10:51 UTC 2015


The following commit has been merged in the master branch:
commit f9af6ab7e3f2a18cec4a807ef7e01ab50a4b4291
Author: Sebastian Ramacher <sramacher at debian.org>
Date:   Wed Jan 21 23:01:41 2015 +0100

    Finalize changelog

diff --git a/debian/changelog b/debian/changelog
index f85be02..49bdb60 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,17 @@
+vlc (2.2.0~rc2-2) unstable; urgency=medium
+
+  * debian/patches: Apply upstream patches for security vulnerabilities.
+    (Closes: #775866)
+    - codec-schroedinger-fix-potential-buffer-overflow.patch: fix potential
+      buffer overflow. (CVE-2014-9629)
+    - demux-mp4-fix-buffer-overflow-in-parsing-of-string-b.patch: fix buffer
+      overflow in parsing of string boxes. (CVE-2014-9626, CVE-2014-9627,
+      CVE-2014-9628)
+    - stream_out-rtp-don-t-use-VLA-for-user-controlled-dat.patch: don't use
+      VLA for user controlled data. (CVE-2014-9630)
+
+ -- Sebastian Ramacher <sramacher at debian.org>  Wed, 21 Jan 2015 22:41:57 +0100
+
 vlc (2.2.0~rc2-1) unstable; urgency=medium
 
   * New upstream release.

-- 
VLC media player packaging



More information about the pkg-multimedia-commits mailing list