-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
- ------------------------------------------------------------------------
Debian Security Advisory DSA-1536-1 security@
debian.org
http://www.debian.org/security/ Thijs Kinkhorst
March 31, 2008
http://www.debian.org/security/faq
- ------------------------------------------------------------------------
Package : xine-lib
Vulnerability : several
Problem type : local (remote)
Debian-specific: no
CVE Id(s) : CVE-2007-1246 CVE-2007-1387 CVE-2008-0073 CVE-2008-0486
CVE-2008-1161
Debian Bug : 464696
Several local vulnerabilities have been discovered in Xine, a
media player library, allowed for a denial of service or arbitrary code
execution, which could be exploited through viewing malicious content.
The Common Vulnerabilities and Exposures project identifies the following
problems: