oss-sec mailing list archives

Re: CVE requests for mplayer/vlc and abcm2ps


From: Josh Bressers <bressers () redhat com>
Date: Fri, 4 Jun 2010 16:08:10 -0400 (EDT)

----- "Moritz Muehlenhoff" <jmm () debian org> wrote:

Hi,
please assign CVE IDs for these issues:

1. mplayer/VLC:
http://dzcore.wordpress.com/2009/07/27/dzc-2009-001-the-movie-player-and-vlc-media-player-real-data-transport-parsing-integer-underflow/
http://www.debian.org/security/2010/dsa-2044
http://www.debian.org/security/2010/dsa-2043

It's the same code that causes both of these. We'll use one id:
CVE-2010-2062



2. abcm2ps:
http://moinejf.free.fr/abcm2ps-5.txt


Steve,

Can you deal with this one. I lack the time or talent to parse "Fix more
security vulnerabilities"

Thanks.

-- 
    JB


Current thread: