freebsd-ports/multimedia
Vasil Dimov 49dfdb8f18 Fix mplayer vulnerability (heap overflow) in the ASF demuxer
Arbitrary remote code execution under the user ID running the player
when streaming an ASF file from a malicious server.

PR:		ports/93767
Submitted by:	"Thomas E. Zander" <riggs@rrr.de> (maintainer)
Approved by:	portmgr (erwin)
Obtained from:	mplayer CVS repo: http://www1.mplayerhq.hu/cgi-bin/cvsweb.cgi/main/libmpdemux/demuxer.h.diff?r2=1.90&r1=1.87&f=u
Security:	heap overflow in the ASF demuxer (http://www.mplayerhq.hu/design7/news.html#vuln13, http://bugs.gentoo.org/show_bug.cgi?id=122029)
2006-03-09 08:42:28 +00:00
..
acidrip
audacious Put the distfile on MASTER_SITE_LOCAL to fix fetching. 2006-03-05 05:12:55 +00:00
audacious-plugins Put the distfile on MASTER_SITE_LOCAL to fix fetching. 2006-03-05 05:12:55 +00:00
avidemux2 - Update to 2.1.1 2006-01-27 11:53:12 +00:00
avifile Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
avinfo - Add SHA256 2005-11-25 16:19:39 +00:00
beep-media-player Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
bmp-extra-plugins Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
bmpx Add a knob for enabling gconf backend. It's on by default since it's more 2006-02-16 10:18:42 +00:00
bsdav SHA256ify 2006-02-01 00:48:50 +00:00
bsdbktr_tvtune SHA256ify 2006-01-22 21:24:05 +00:00
camserv Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
dirac SHA256ify 2006-01-22 21:24:05 +00:00
dtv - Add SHA256 2005-11-25 16:19:39 +00:00
dumpmpeg SHA256ify 2006-01-22 21:24:05 +00:00
dv2jpg Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
dvbcut Add dvbcut, a Qt based program for cutting of MPEG TS stream files 2005-12-29 00:18:05 +00:00
dvd-slideshow Chase libversion bumb to libMagick.so.9 2006-01-05 03:57:35 +00:00
dvdauthor SHA256ify 2006-01-22 21:24:05 +00:00
dvdrip Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
dvdstyler Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
dvdwizard Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
dvts SHA256ify 2006-01-22 21:24:05 +00:00
emovix SHA256ify 2006-01-22 21:24:05 +00:00
enjoympeg SHA256ify 2006-01-22 21:24:05 +00:00
exportvideo Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
ffmpeg Remove the FreeBSD KEYWORD from all rc.d scripts where it appears. 2006-02-20 20:47:50 +00:00
ffmpeg-devel Remove the FreeBSD KEYWORD from all rc.d scripts where it appears. 2006-02-20 20:47:50 +00:00
freevo Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
fxtv Update description on supported hardware and remove some outdated stuff. 2005-12-31 14:02:46 +00:00
gaim-xmms-remote Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gavl Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gcfilms
gdvrecv SHA256ify 2006-01-22 21:24:05 +00:00
ggrab SHA256ify 2006-01-22 21:24:05 +00:00
gmencoder - Add SHA256 2005-11-25 16:19:39 +00:00
gnonlin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
goggles
gopchop Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
gpac-libgpac
grpplaylist SHA256ify 2006-01-22 21:24:05 +00:00
gstreamer Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer80 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-editor Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-ffmpeg Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-ffmpeg80 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-pitfdll Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-plugins Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-plugins80 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-plugins-all
gstreamer-plugins-all80
gstreamer-plugins-core
gstreamer-plugins-core80
gstreamer-plugins-dirac
gstreamer-plugins-dirac80
gstreamer-plugins-dts
gstreamer-plugins-dv
gstreamer-plugins-dv80
gstreamer-plugins-dvd
gstreamer-plugins-dvd80
gstreamer-plugins-gnonlin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
gstreamer-plugins-libfame
gstreamer-plugins-libfame80
gstreamer-plugins-mpeg2dec
gstreamer-plugins-mpeg2dec80
gstreamer-plugins-mpeg2enc
gstreamer-plugins-mpeg2enc80
gstreamer-plugins-mplex
gstreamer-plugins-mplex80
gstreamer-plugins-theora
gstreamer-plugins-theora80
gstreamer-plugins-x264
gstreamer-plugins-x26480
gstreamer-plugins-xvid
gstreamer-plugins-xvid80
gsubedit Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
gtksubtitler Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
gxanim Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
gxine Fix up a little more post-libtool fallout 2006-03-02 03:11:55 +00:00
gxmms Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
handbrake
handbrake-gtk2
hayes Fix build in a single-libtool world 2006-02-27 16:14:27 +00:00
istanbul Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
jahshaka - Unbreak. Fix build with libglut 6.4.1. 2006-01-21 16:57:59 +00:00
k9copy Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
k9copy-kde4 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
kaffeine Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
kaffeine-mozilla Chase libversion bumb to libMagick.so.9 2006-01-05 03:57:35 +00:00
kbtv Update to 1.0-rc2 2005-12-17 01:31:40 +00:00
kdemultimedia3 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
kdemultimedia4 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
kino Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
kmenc15 - Add SHA256 2005-11-25 16:19:39 +00:00
kmplayer Post libtool-conversion fixups 2006-02-26 19:03:38 +00:00
kmplayer-kde4 Post libtool-conversion fixups 2006-02-26 19:03:38 +00:00
konverter Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
kplayer Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
kplayer-kde4 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
ksubeditor Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
ldvd Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
libdca
libdivxdecore Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libdivxdecore-devel Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
libdivxencore Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
libdts
libdv Bump PORTREVISION for new gtk-12 library location, post libtool. 2006-02-28 23:06:35 +00:00
libdvbpsi Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libdvdcss Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libdvdnav Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libdvdplay Update MASTER_SITES 2005-11-28 17:51:54 +00:00
libdvdread Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libfame Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libmatroska
libmovtar Bump PORTREVISION for new glib-12 library location, post libtool. 2006-02-28 23:05:51 +00:00
libmpeg2 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libmpeg3 SHA256ify 2006-01-22 21:24:05 +00:00
libquicktime Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libtheora Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
libxine Fix build error. 2006-02-26 04:38:13 +00:00
linux-divx4linux o Do not Linux brandelf(1) library files 2005-12-27 18:24:42 +00:00
linux-divx4linux4 o Do not Linux brandelf(1) library files 2005-12-27 18:24:42 +00:00
linux-realplayer eplace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 05:52:28 +00:00
linux-xmovie
lsdvd
lxdvdrip Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
mjpegtools Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
mjpegtools-yuvfilters
mkvtoolnix Chase shlib bump of libexpat. 2006-01-30 23:20:05 +00:00
mkxvcd Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
mmpython SHA256ify 2006-01-22 21:24:05 +00:00
mmsclient SHA256ify 2006-01-22 21:24:05 +00:00
mmsrip SHA256ify 2006-01-22 21:24:05 +00:00
motion Add motion 3.2.4, a motion detection application. 2005-12-25 21:55:42 +00:00
mp4v2 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
mpeg SHA256ify 2006-02-01 00:48:50 +00:00
mpeg2codec - Add SHA256 2005-11-25 16:19:39 +00:00
mpeg2play - Add SHA256 2005-11-25 16:19:39 +00:00
mpeg4ip Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
mpeg4ip-libmp4v2 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
mpeg_encode - Add SHA256 2005-11-25 16:19:39 +00:00
mpeg_play - Add SHA256 2005-11-25 16:19:39 +00:00
mpeg_stat - Add SHA256 2005-11-25 16:19:39 +00:00
mpegedit - Add SHA256 2005-11-25 16:19:39 +00:00
mpgtx
mplayer Fix mplayer vulnerability (heap overflow) in the ASF demuxer 2006-03-09 08:42:28 +00:00
mplayer-fonts SHA256ify 2006-01-22 21:24:05 +00:00
mplayer-skins Honor saved config parameters when BATCH=YES. 2006-02-08 09:27:35 +00:00
mplayerxp Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
mplex - Add SHA256 2005-11-25 16:19:39 +00:00
mtv - Add SHA256 2005-11-25 16:19:39 +00:00
netshow - Add SHA256 2005-11-25 16:19:39 +00:00
noatun-plugins Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
nuppelvideo SHA256ify 2006-01-22 21:24:05 +00:00
nxtvepg
ogle o Use recently added audio/liba52-devel port instead of audio/liba52 2005-12-12 18:57:01 +00:00
ogle-gui Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
ogmrip Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
ogmtools
okle Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
openquicktime Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
oqtencoder Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
oqtplayer Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
p5-GStreamer
p5-MP4-Info Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
p5-RIFF-Info Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
p5-Subtitles Update search.cpan.org WWW: entries to have a trailing slash. 2006-02-20 20:50:22 +00:00
p5-Video-Info Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
p5-Video-OpenQuicktime Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
pitivi Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
ppm2fli - Add SHA256 2005-11-25 16:19:39 +00:00
projectx SHA256ify 2006-01-22 21:24:05 +00:00
pvr250 add hcwPVRP2.sys to the NOFETCHFILES variable 2006-01-21 21:41:42 +00:00
pvrxxx add hcwPVRP2.sys to the NOFETCHFILES variable 2006-01-21 21:41:42 +00:00
py-gstreamer Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
py-gstreamer80 Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
qdvdauthor Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
quark Chase libversion bumb to libMagick.so.9 2006-01-05 03:57:35 +00:00
quodlibet Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
qvamps o Fix: growisofs addition patch had a glitch on the command line 2006-01-14 09:50:16 +00:00
recmpeg - Add SHA256 2005-11-25 16:19:39 +00:00
replex
rox-videothumbnail Replace ugly "@unexec rmdir %D... 2>/dev/null || true" with @dirrmtry 2006-01-22 02:30:01 +00:00
ruby-gst SHA256ify 2006-02-01 00:48:50 +00:00
sabbu Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
slideshow Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
smpeg Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
smpeg-xmms Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
spigot SHA256ify 2006-01-22 21:24:05 +00:00
splitmpg - Add SHA256 2005-11-25 16:19:39 +00:00
streamanalyze SHA256ify 2006-01-22 21:24:05 +00:00
streamdvd SHA256ify 2006-01-22 21:24:05 +00:00
subconv - Add SHA256 2005-11-25 16:19:39 +00:00
subtitleripper Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
subtools Add subtools 20051215, command-line tools for movie subtitles in 2006-01-11 02:31:12 +00:00
tcmplex-panteltje SHA256ify 2006-01-22 21:24:05 +00:00
tkxanim SHA256ify 2006-01-22 21:24:05 +00:00
tosvcd - Add SHA256 2005-11-25 16:19:39 +00:00
totem Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
totem-gstreamer
tovid Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
toxine Chase libversion bumb to libMagick.so.9 2006-01-05 03:57:35 +00:00
transcode Fix hardcoded (!?) references to gtk12 to point to gtk-12 from the 2006-02-27 22:27:50 +00:00
vamps New port vamps version 0.98: High performance tool to transcode DVD 2006-01-04 10:24:47 +00:00
vcdgear - Add SHA256 2005-11-25 16:19:39 +00:00
vcdimager Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
vcdpad SHA256ify 2006-01-22 21:24:05 +00:00
vcdtools - Add SHA256 2005-11-25 16:19:39 +00:00
vic SHA256ify 2006-01-22 12:59:47 +00:00
vlc Chase gnutls update. 2006-01-09 16:34:19 +00:00
vlc-devel - Default to and support ffmpeg-devel, if ffmpeg is installed it will depends 2006-01-14 03:24:19 +00:00
vstream-client SHA256ify 2006-01-22 21:24:05 +00:00
win32-codecs Update win32-codecs to 20050412 2006-01-07 06:40:14 +00:00
x264 - Disable pthreads for now 2006-01-17 20:23:18 +00:00
x264-devel - Disable pthreads for now 2006-01-17 20:23:18 +00:00
xanim
xawtv fix compilation if libevent is installed 2006-02-11 11:25:15 +00:00
xdvshow SHA256ify 2006-01-22 21:24:05 +00:00
xfce4-media Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xfce4-xmms-controller-plugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xfce4-xmms-plugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xine SHA256ify 2006-01-22 21:24:05 +00:00
xine_artsplugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xmms Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
xmms-avi Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
xmms-skins Bump PORTREVISION on glib12/gtk12 consumer ports to ease the upgrade path. 2006-03-07 08:28:06 +00:00
xmms-status-plugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xmms-weasel Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xmps Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xmps-opendivx-plugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xmps-win32-plugin Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xtheater Conversion to a single libtool environment. 2006-02-23 10:40:44 +00:00
xvid Update to 1.1.0 2006-01-23 08:28:54 +00:00
xvid4conf Update to 1.12 2006-01-28 18:59:29 +00:00
y4mscaler - Update to 9.0 2005-12-12 15:09:18 +00:00
Makefile program used to "time" subtitles: 2006-01-18 06:45:00 +00:00