Bug 247395 - multimedia/vlc: Update to 3.0.11 (Fixes multiple CVE)
Summary: multimedia/vlc: Update to 3.0.11 (Fixes multiple CVE)
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Some People
Assignee: freebsd-multimedia (Nobody)
URL: http://www.videolan.org/vlc/releases/...
Keywords:
Depends on:
Blocks:
 
Reported: 2020-06-18 22:23 UTC by Vladimir Druzenko
Modified: 2020-06-21 15:36 UTC (History)
1 user (show)

See Also:
bugzilla: maintainer-feedback? (multimedia)
vvd: maintainer-feedback?
vvd: merge-quarterly?


Attachments
Update to 3.0.11 (908 bytes, patch)
2020-06-18 22:23 UTC, Vladimir Druzenko
vvd: maintainer-approval?
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Vladimir Druzenko freebsd_committer freebsd_triage 2020-06-18 22:23:54 UTC
Created attachment 215754 [details]
Update to 3.0.11

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=247341

http://www.videolan.org/security/sb-vlc3011.html
https://github.com/videolan/vlc-3.0/releases/tag/3.0.11
https://github.com/videolan/vlc-3.0/blob/3.0.11/NEWS

Access:
 * rtp descriptor leak on error fix
Demux:
 * Fixed regression with some encrypted HLS streams
 * Live HLS delay until first update fix
 * HLS rendition switch regression fix
 * Fix imprecise m4a seek
Decoder:
 * Fixed missing captions with some capture cards
Audio filters:
 * soxr resampling fixes
Contribs:
 * Updated libfaad to 2.9.2 (Parametric Stereo regression)
 * Updated libarchive to 3.4.2
macOS:
 * Fixed moving video window with mouse
 * Fixed UI issue showing "permissions warning" unnecessarily often
 * Fixed stack buffer overflow listing bluray mount points
 * Fixed potential crashes at startup
Audio Output:
 * Fix sound not coming back after a pause with CoreAudio (macOS/iOS)
Misc:
 * Update Youtube script
Comment 1 commit-hook freebsd_committer freebsd_triage 2020-06-19 14:33:31 UTC
A commit references this bug:

Author: tcberner
Date: Fri Jun 19 14:32:52 UTC 2020
New revision: 539618
URL: https://svnweb.freebsd.org/changeset/ports/539618

Log:
  multimed/vlc: update to 3.0.11

  Access:
   * rtp descriptor leak on error fix

  Demux:
   * Fixed regression with some encrypted HLS streams
   * Live HLS delay until first update fix
   * HLS rendition switch regression fix
   * Fix imprecise m4a seek

  Decoder:
   * Fixed missing captions with some capture cards

  Audio filters:
   * soxr resampling fixes

  Contribs:
   * Updated libfaad to 2.9.2 (Parametric Stereo regression)
   * Updated libarchive to 3.4.2

  macOS:
   * Fixed moving video window with mouse
   * Fixed UI issue showing "permissions warning" unnecessarily often
   * Fixed stack buffer overflow listing bluray mount points
   * Fixed potential crashes at startup

  Audio Output:
   * Fix sound not coming back after a pause with CoreAudio (macOS/iOS)

  Misc:
   * Update Youtube script

  http://www.videolan.org/security/sb-vlc3011.html
  https://github.com/videolan/vlc-3.0/releases/tag/3.0.11
  https://github.com/videolan/vlc-3.0/blob/3.0.11/NEWS

  PR:		247395
  Submitted by:	VVD <vvd@unislabs.com>
  MFH:		2020Q2
  Relnotes:a
  Security:	77896891-b08a-11ea-937b-b42e99a1b9c3

Changes:
  head/multimedia/vlc/Makefile
  head/multimedia/vlc/distinfo
Comment 2 commit-hook freebsd_committer freebsd_triage 2020-06-20 06:29:36 UTC
A commit references this bug:

Author: tcberner
Date: Sat Jun 20 06:29:08 UTC 2020
New revision: 539695
URL: https://svnweb.freebsd.org/changeset/ports/539695

Log:
  MFH: r539618

  multimed/vlc: update to 3.0.11

  Access:
   * rtp descriptor leak on error fix

  Demux:
   * Fixed regression with some encrypted HLS streams
   * Live HLS delay until first update fix
   * HLS rendition switch regression fix
   * Fix imprecise m4a seek

  Decoder:
   * Fixed missing captions with some capture cards

  Audio filters:
   * soxr resampling fixes

  Contribs:
   * Updated libfaad to 2.9.2 (Parametric Stereo regression)
   * Updated libarchive to 3.4.2

  macOS:
   * Fixed moving video window with mouse
   * Fixed UI issue showing "permissions warning" unnecessarily often
   * Fixed stack buffer overflow listing bluray mount points
   * Fixed potential crashes at startup

  Audio Output:
   * Fix sound not coming back after a pause with CoreAudio (macOS/iOS)

  Misc:
   * Update Youtube script

  http://www.videolan.org/security/sb-vlc3011.html
  https://github.com/videolan/vlc-3.0/releases/tag/3.0.11
  https://github.com/videolan/vlc-3.0/blob/3.0.11/NEWS

  PR:		247395
  Submitted by:	VVD <vvd@unislabs.com>
  Relnotes:a
  Security:	77896891-b08a-11ea-937b-b42e99a1b9c3

  Approved by:	ports-secteam (joneum)

Changes:
_U  branches/2020Q2/
  branches/2020Q2/multimedia/vlc/Makefile
  branches/2020Q2/multimedia/vlc/distinfo