Security update for libaom
This update for libaom fixes the following issues:
- CVE-2020-36129: Fixed stack buffer overflow via the component src/aom_image.c (bsc#1193356).
- CVE-2020-36131: Fixed stack buffer overflow via the component stats/rate_hist.c (bsc#1193365).
- CVE-2020-36135: Fixed NULL pointer dereference via the component rate_hist.c (bsc#1193366).
- CVE-2020-36130: Fixed NULL pointer dereference via the component av1/av1_dx_iface.c (bsc#1193369).
This update was imported from the SUSE:SLE-15-SP2:Update update project.
-
Submitted by
Petr Gajdos (pgajdos)
Fixed bugs
bnc#1193365
VUL-0: CVE-2020-36131: libaom: AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
bnc#1193369
VUL-0: CVE-2020-36130: libaom: AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
bnc#1193356
VUL-0: CVE-2020-36129: libaom: AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
bnc#1193366
VUL-0: CVE-2020-36135: libaom: AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.