From 4f2d7949f03e1c198bc888f2d05f421d35c57e21 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Mon, 9 Oct 2017 18:53:29 +0100 Subject: reinit the tree, so we can have metadata --- metadata/glsa/glsa-201702-25.xml | 53 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 53 insertions(+) create mode 100644 metadata/glsa/glsa-201702-25.xml (limited to 'metadata/glsa/glsa-201702-25.xml') diff --git a/metadata/glsa/glsa-201702-25.xml b/metadata/glsa/glsa-201702-25.xml new file mode 100644 index 000000000000..3824c1d4d4c0 --- /dev/null +++ b/metadata/glsa/glsa-201702-25.xml @@ -0,0 +1,53 @@ + + + + libass: Multiple vulnerabilities + Multiple vulnerabilities have been found in libass, the worst of + which have unknown impacts. + + libass + 2017-02-20 + 2017-02-20: 1 + 596422 + remote + + + 0.13.4 + 0.13.4 + + + +

libass is a portable subtitle renderer for the ASS/SSA (Advanced + Substation Alpha/Substation Alpha) subtitle format. +

+
+ +

Multiple vulnerabilities have been discovered in libass. Please review + the CVE identifiers referenced below for details. +

+
+ +

A remote attacker could cause a Denial of Service condition or other + unknown impacts via unknown attack vectors. +

+
+ +

There is no known workaround at this time.

+
+ +

All libass users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=media-libs/libass-0.13.4" + +
+ + CVE-2016-7969 + CVE-2016-7970 + CVE-2016-7971 + CVE-2016-7972 + + b-man + whissi +
-- cgit v1.2.3