VLC 3.0.11 media player update with vulnerability fix

Tsebisoa tokollo ya sebapala media se lokisang VLC 3.0.11, eo ho bokeletseng liphoso le ho felisoa bofokodi (CVE-2020-13428), e bakileng khaphatseha buffer tšebetsong ea hxxx_AnnexB_to_xVC(). Ho ba kotsing ho ka 'na ha lumella khoutu ea mohlaseli hore e phethoe ha ho bapala video e entsoeng ka mokhoa o khethehileng ka mokhoa oa H.264 (Annex-B), e kentsoeng, ka mohlala, ka har'a setshelo sa AVI. Ha ho na taba ea ho theha ts'ebetso ea ts'ebetso hajoale. Ntle le mathata a khoutu ea VLC, ho felisitsoe mefokolo e 'meli (CVE-2020-9308, CVE-2019-19221) laebraring ea libarchive e hahiloeng ka har'a lisebelisoa tse ling tsa boot.

Liphetoho tseo e seng tsa ts'ireletso li kenyelletsa ho felisa ho fokotseha ha ho sebetsa le HLS le AAC, hammoho le ho ntlafatsa phetoho ea boemo ba molapo bakeng sa lifaele tsa M4A. E hahela macOS ho rarolla mathata a bakang hore ho bapala ha molumo ho sitisoe, ho senyeha ha o fumana li-disc tsa Bluray tse kentsoeng, le ho senyeha ha ho qala. Lokisa liphoso tsa Android-specific ho sampole ea ho fetola sekhahla sa khoutu.

Source: opennet.ru

Eketsa ka tlhaloso