[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 2603-1] libmediainfo security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -------------------------------------------------------------------------
Debian LTS Advisory DLA-2603-1                debian-lts@lists.debian.org
https://www.debian.org/lts/security/                           Chris Lamb
March 23, 2021                                https://wiki.debian.org/LTS
- -------------------------------------------------------------------------

Package        : libmediainfo
Version        : 0.7.91-1+deb9u1
CVE IDs        : CVE-2019-11372
	       : CVE-2019-11373
               : CVE-2020-15395
               : CVE-2020-26797
Debian Bugs    : #927672, #967073 & #985554

It was discovered that there were a number of vulnerabilities in
libmediainfo, a library reading metadata such as track names,
lengths, etc. from media files.

For Debian 9 "Stretch", these problems have been fixed in version
0.7.91-1+deb9u1.

We recommend that you upgrade your libmediainfo packages.

For the detailed security status of libmediainfo please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/libmediainfo

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAmBZzXsACgkQHpU+J9Qx
Hljvtw/+O6l9WNcLc/vGj3Dqro/6U3qdMgw9GPVP7imtU96dM2JDf7jAY3NU8LGm
97j8nFJUmDtEh+nGi0eC+4cmGr5Wo2Om27xL4uexM1rxmSBhw3pXXqERd3gBJ3hM
g+nWUC1G1KsS2YvcawCnqTJXiJkr2QCP0QNQjybyr+5YWSPzpJL6uYJuld1r6q/p
s9xONAVN8cGUCIq2DjLaT23v8LZHyVlx192iq8ex5Ndpb3vuO8tEyw0m5VtZdles
aVUUQWvWBz/CnSl5y9oSG6fAvh0yF9CkLyFNmgWJadFIu41xG2aKYeZjzH8ZnC/A
NcqPJOTMLITZFWB0Rir+pMIKJShyrRila2JQJfCbrl2K9rq1PodF5D38flaPFz0d
eu6tXpPSrSfBs0EBGEW0OPLG+U3yrqZaVy6Qh/ONwg4pd7LhGWq7L8r3EXfpdnfF
3UaHEOolRRlX2sxQMRHR1omBPhzY3TGoYASz/IcTGWar7C5tXu2ZQmSVXkVT0Dqb
YNSswNLAaoLtLbSkBxxp3zpMI/hSilSMwAR3PMlqo/mbguQ8F6piKeOZdwJfyoqc
c24BsY/8FZX6Fp+iRTIJVUewXEmniBJvOJfQeMVRydQ2uTtnUJYvtUyscJYFqnpJ
KMbFTHgkh4EvsH+vLpNxTd41zyVYiEY13JshsRfA+qchbII1LwI=
=r0II
-----END PGP SIGNATURE-----


Reply to: