SPECS: mplayer.spec - added CVE-2005-4048 patch (heap overflow exp...

qboosh qboosh at pld-linux.org
Mon Mar 20 11:56:05 CET 2006


Author: qboosh                       Date: Mon Mar 20 10:56:05 2006 GMT
Module: SPECS                         Tag: HEAD
---- Log message:
- added CVE-2005-4048 patch (heap overflow exploitable via PNG images)

---- Files affected:
SPECS:
   mplayer.spec (1.319 -> 1.320) 

---- Diffs:

================================================================
Index: SPECS/mplayer.spec
diff -u SPECS/mplayer.spec:1.319 SPECS/mplayer.spec:1.320
--- SPECS/mplayer.spec:1.319	Fri Mar 17 20:52:46 2006
+++ SPECS/mplayer.spec	Mon Mar 20 11:55:59 2006
@@ -112,6 +112,7 @@
 Patch16:	%{name}-kill-mabi_altivec.patch
 Patch17:	%{name}-gcc4.patch
 Patch18:	http://www.mplayerhq.hu/MPlayer/patches/demuxer_h_fix_20060212.diff
+Patch19:	%{name}-CVE-2005-4048.patch
 #http://www.openchrome.org/snapshots/mplayer/
 URL:		http://www.mplayerhq.hu/
 %{?with_directfb:BuildRequires:	DirectFB-devel}
@@ -309,6 +310,7 @@
 %patch16 -p1
 %patch17 -p1
 %patch18 -p0
+%patch19 -p1
 
 # kill evil file, hackery not needed with llh
 echo > osdep/kerneltwosix.h
@@ -555,6 +557,9 @@
 All persons listed below can be reached at <cvs_login>@pld-linux.org
 
 $Log$
+Revision 1.320  2006/03/20 10:55:59  qboosh
+- added CVE-2005-4048 patch (heap overflow exploitable via PNG images)
+
 Revision 1.319  2006/03/17 19:52:46  pluto
 - lzw patent is dead. BR giflib-devel.
 
================================================================

---- CVS-web:
    http://cvs.pld-linux.org/SPECS/mplayer.spec?r1=1.319&r2=1.320&f=u



More information about the pld-cvs-commit mailing list