diff options
author | Reinhard Tartler <siretart@tauware.de> | 2011-03-18 20:01:41 +0300 |
---|---|---|
committer | Reinhard Tartler <siretart@tauware.de> | 2011-03-18 20:34:49 +0300 |
commit | b0f8fdc411c6380ca9279c8660915f35f5df1a3c (patch) | |
tree | ca87a0d5bb65d68a7cb2d254f2e60ef3244e76cb /RELEASE | |
parent | ba1927dda9a96476f3b0f56278349a596a1f8558 (diff) |
release notes and changelog for 0.6.2
Diffstat (limited to 'RELEASE')
-rw-r--r-- | RELEASE | 23 |
1 files changed, 23 insertions, 0 deletions
@@ -121,3 +121,26 @@ HE-AAC v2 backport This release includes a backport of the AAC decoder from trunk, which enables proper playback of HE-AAC v2 media. + + +* 0.6.2 + +General notes +------------- + +This is a maintenance-only release that addresses a small number of security +and portability issues. Distributors and system integrators are encouraged +to update and share their patches against this branch. + +Security fixes +-------------- + +Programming errors in container and codec implementations may lead to +denial of service or the execution of arbitrary code if the user is +tricked into opening a malformed media file or stream. + +Affected and updated have been the implementations of the following +codecs and container formats: + + - VC1 decoder (Change related to CVE-2011-0723) + - APE decoder (cf. http://packetstorm.linuxsecurity.com/1103-exploits/vlc105-dos.txt) |