Bugzilla – Bug 957376
VUL-0: CVE-2015-6360: srtp,libsrtp: Denial of service via crafted RTP header
Last modified: 2017-08-15 09:53:48 UTC
CVE-2015-6360 Denial of service via crafted RTP header Upstream: https://github.com/cisco/libsrtp/commit/704a31774db0dd941094fd2b47c21638b8dc3de2 Upstream: https://github.com/cisco/libsrtp/commit/be95365fbb4788b688cab7af61c65b7989055fb4 Upstream: https://github.com/cisco/libsrtp/commit/cdc69f2acde796a4152a250f869271298abc233f Upstream: https://github.com/cisco/libsrtp/commit/be06686c8e98cc7bd934e10abb6f5e971d03f8ee References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-6360 http://people.canonical.com/~ubuntu-security/cve/2015/CVE-2015-6360.html
(opensuse only. we could do minor version updates I think)
bugbot adjusting priority
This is an autogenerated message for OBS integration: This bug (957376) was mentioned in https://build.opensuse.org/request/show/423769 42.1 / libsrtp
openSUSE-SU-2016:2266-1: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 957376 CVE References: CVE-2015-6360 Sources used: openSUSE Leap 42.1 (src): libsrtp-1.5.4-6.1
fixed