You are here
Home > Preporuke > Sigurnosni nedostaci programske biblioteke libmediainfo

Sigurnosni nedostaci programske biblioteke libmediainfo

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2019-1736c1268d
2019-05-25 01:04:18.279190
——————————————————————————–

Name : libmediainfo
Product : Fedora 30
Version : 19.04
Release : 1.fc30
URL : http://mediaarea.net/MediaInfo
Summary : Library for supplies technical and tag information about a video or audio file
Description :
This package contains the shared library for MediaInfo.
MediaInfo supplies technical and tag information about a video or
audio file.

What information can I get from MediaInfo?
* General: title, author, director, album, track number, date, duration…
* Video: codec, aspect, fps, bitrate…
* Audio: codec, sample rate, channels, language, bitrate…
* Text: language of subtitle
* Chapters: number of chapters, list of chapters

DivX, XviD, H263, H.263, H264, x264, ASP, AVC, iTunes, MPEG-1,
MPEG1, MPEG-2, MPEG2, MPEG-4, MPEG4, MP4, M4A, M4V, QuickTime,
RealVideo, RealAudio, RA, RM, MSMPEG4v1, MSMPEG4v2, MSMPEG4v3,
VOB, DVD, WMA, VMW, ASF, 3GP, 3GPP, 3GP2

What format (container) does MediaInfo support?
* Video: MKV, OGM, AVI, DivX, WMV, QuickTime, Real, MPEG-1,
MPEG-2, MPEG-4, DVD (VOB) (Codecs: DivX, XviD, MSMPEG4, ASP,
H.264, AVC…)
* Audio: OGG, MP3, WAV, RA, AC3, DTS, AAC, M4A, AU, AIFF
* Subtitles: SRT, SSA, ASS, SAMI

——————————————————————————–
Update Information:

Update to 19.04.
——————————————————————————–
ChangeLog:

* Wed Apr 24 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 19.04-1
– Update to 19.04
* Mon Apr 22 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 18.12-3
– Fix CVE-2019-11372
——————————————————————————–
References:

[ 1 ] Bug #1701845 – CVE-2019-11372 CVE-2019-11373 mediainfo: various flaws [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1701845
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-1736c1268d’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2019-7155125125
2019-05-25 01:10:26.463302
——————————————————————————–

Name : libmediainfo
Product : Fedora 28
Version : 19.04
Release : 1.fc28
URL : http://mediaarea.net/MediaInfo
Summary : Library for supplies technical and tag information about a video or audio file
Description :
This package contains the shared library for MediaInfo.
MediaInfo supplies technical and tag information about a video or
audio file.

What information can I get from MediaInfo?
* General: title, author, director, album, track number, date, duration…
* Video: codec, aspect, fps, bitrate…
* Audio: codec, sample rate, channels, language, bitrate…
* Text: language of subtitle
* Chapters: number of chapters, list of chapters

DivX, XviD, H263, H.263, H264, x264, ASP, AVC, iTunes, MPEG-1,
MPEG1, MPEG-2, MPEG2, MPEG-4, MPEG4, MP4, M4A, M4V, QuickTime,
RealVideo, RealAudio, RA, RM, MSMPEG4v1, MSMPEG4v2, MSMPEG4v3,
VOB, DVD, WMA, VMW, ASF, 3GP, 3GPP, 3GP2

What format (container) does MediaInfo support?
* Video: MKV, OGM, AVI, DivX, WMV, QuickTime, Real, MPEG-1,
MPEG-2, MPEG-4, DVD (VOB) (Codecs: DivX, XviD, MSMPEG4, ASP,
H.264, AVC…)
* Audio: OGG, MP3, WAV, RA, AC3, DTS, AAC, M4A, AU, AIFF
* Subtitles: SRT, SSA, ASS, SAMI

——————————————————————————–
Update Information:

Update to 19.04.
——————————————————————————–
ChangeLog:

* Wed Apr 24 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 19.04-1
– Update to 19.04
* Mon Apr 22 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 18.12-3
– Fix CVE-2019-11372
* Fri Feb 1 2019 Fedora Release Engineering <releng@fedoraproject.org> – 18.12-2
– Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Thu Dec 13 2018 Vasiliy N. Glazov <vascom2@gmail.com> – 18.12-1
– Update to 18.12
* Tue Nov 27 2018 Igor Gnatenko <ignatenkobrain@fedoraproject.org> – 18.08.1-2
– Rebuild for tinyxml2 7.x
* Tue Sep 11 2018 Vasiliy N. Glazov <vascom2@gmail.com> – 18.08.1-1
– Update to 18.08.1
* Mon Sep 3 2018 Vasiliy N. Glazov <vascom2@gmail.com> – 18.08-1
– Update to 18.08
* Fri Jul 13 2018 Fedora Release Engineering <releng@fedoraproject.org> – 18.05-2
– Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Thu May 10 2018 Vasiliy N. Glazov <vascom2@gmail.com> – 18.05-1
– Update to 18.05
——————————————————————————–
References:

[ 1 ] Bug #1701845 – CVE-2019-11372 CVE-2019-11373 mediainfo: various flaws [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1701845
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-7155125125’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2019-b7cf3236fb
2019-05-25 03:34:29.627706
——————————————————————————–

Name : libmediainfo
Product : Fedora 29
Version : 19.04
Release : 1.fc29
URL : http://mediaarea.net/MediaInfo
Summary : Library for supplies technical and tag information about a video or audio file
Description :
This package contains the shared library for MediaInfo.
MediaInfo supplies technical and tag information about a video or
audio file.

What information can I get from MediaInfo?
* General: title, author, director, album, track number, date, duration…
* Video: codec, aspect, fps, bitrate…
* Audio: codec, sample rate, channels, language, bitrate…
* Text: language of subtitle
* Chapters: number of chapters, list of chapters

DivX, XviD, H263, H.263, H264, x264, ASP, AVC, iTunes, MPEG-1,
MPEG1, MPEG-2, MPEG2, MPEG-4, MPEG4, MP4, M4A, M4V, QuickTime,
RealVideo, RealAudio, RA, RM, MSMPEG4v1, MSMPEG4v2, MSMPEG4v3,
VOB, DVD, WMA, VMW, ASF, 3GP, 3GPP, 3GP2

What format (container) does MediaInfo support?
* Video: MKV, OGM, AVI, DivX, WMV, QuickTime, Real, MPEG-1,
MPEG-2, MPEG-4, DVD (VOB) (Codecs: DivX, XviD, MSMPEG4, ASP,
H.264, AVC…)
* Audio: OGG, MP3, WAV, RA, AC3, DTS, AAC, M4A, AU, AIFF
* Subtitles: SRT, SSA, ASS, SAMI

——————————————————————————–
Update Information:

Update to 19.04.
——————————————————————————–
ChangeLog:

* Wed Apr 24 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 19.04-1
– Update to 19.04
* Mon Apr 22 2019 Vasiliy N. Glazov <vascom2@gmail.com> – 18.12-3
– Fix CVE-2019-11372
* Fri Feb 1 2019 Fedora Release Engineering <releng@fedoraproject.org> – 18.12-2
– Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Thu Dec 13 2018 Vasiliy N. Glazov <vascom2@gmail.com> – 18.12-1
– Update to 18.12
* Tue Nov 27 2018 Igor Gnatenko <ignatenkobrain@fedoraproject.org> – 18.08.1-2
– Rebuild for tinyxml2 7.x
——————————————————————————–
References:

[ 1 ] Bug #1701845 – CVE-2019-11372 CVE-2019-11373 mediainfo: various flaws [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1701845
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-b7cf3236fb’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

AutorZvonimir Bosnjak
Cert idNCERT-REF-2019-05-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programske biblioteke jackson-databind

Otkriveni su sigurnosni nedostaci programske biblioteke jackson-databind za operacijski sustav Debian. Otkriveni nedostaci potencijalnim napadačima omogućuju izvršavanje proizvoljnog programskog koda...

Close