From 831fa3d538480c035102864007dc4eb4969f2fd7 Mon Sep 17 00:00:00 2001 From: Darren Salt Date: Thu, 17 Jan 2008 23:51:26 +0000 Subject: Correct the changelog entry for the security fix in 1.1.9.1. --HG-- extra : transplant_source : AR%05H%29fH%3B%A37F%22h%85%7D%09%11/%FE%DF --- ChangeLog | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/ChangeLog b/ChangeLog index ec47096eb..9da723f22 100644 --- a/ChangeLog +++ b/ChangeLog @@ -4,7 +4,8 @@ xine-lib (1.1.10) (unreleased) xine-lib (1.1.9.1) * Security fixes: - - Fix a buffer overflow in RTSP header-handling code. (CVE-2008-0225) + - Buffer overflow which allows a remote attacker to execute arbitrary + code via a crafted SDP Abstract attribute. (CVE-2008-0225) (Fix ported from mplayer changeset 22821) * Fix a read-past-end bug in xine-lib's internal strtok_r replacement. (Only affects systems without strtok_r.) [Bug #19] -- cgit v1.2.3