Overview

Request 523752 accepted

ffmpeg:

+ * avutil/pixdesc: fixed NULL deref in av_color_primaries_name
+ [CVE-2017-14225] [boo#1058018]
+ * avformat/asfdec: Fix DoS in asf_build_simple_index
+ [CVE-2017-14223] [boo#1058019]
+ * avformat/mov: Fix DoS in read_tfra
+ [CVE-2017-14222] [boo#1058020].

ffmpeg2:

+- Add patches 0001-avformat-asfdec-Fix-DoS-in-asf_build_simple_index.patch
+ [CVE-2017-14223] [boo#1058019],
+ 0001-avformat-mov-Fix-DoS-in-read_tfra.patch
+ [CVE-2017-14222] [boo#1058020]
+

nsvs_file_offset loop. [CVE-2017-14171] [boo#1057539]
+ * avutil/pixdesc: av_color_primaries_name NULL deref fixed
+ [CVE-2017-14225] [boo#1058018]

Request History
Andreas Stieger's avatar

AndreasStieger created request

ffmpeg:

+ * avutil/pixdesc: fixed NULL deref in av_color_primaries_name
+ [CVE-2017-14225] [boo#1058018]
+ * avformat/asfdec: Fix DoS in asf_build_simple_index
+ [CVE-2017-14223] [boo#1058019]
+ * avformat/mov: Fix DoS in read_tfra
+ [CVE-2017-14222] [boo#1058020].

ffmpeg2:

+- Add patches 0001-avformat-asfdec-Fix-DoS-in-asf_build_simple_index.patch
+ [CVE-2017-14223] [boo#1058019],
+ 0001-avformat-mov-Fix-DoS-in-read_tfra.patch
+ [CVE-2017-14222] [boo#1058020]
+

nsvs_file_offset loop. [CVE-2017-14171] [boo#1057539]
+ * avutil/pixdesc: av_color_primaries_name NULL deref fixed
+ [CVE-2017-14225] [boo#1058018]


Maintenance Bot's avatar

maintbot added as a reviewer

Submission for ffmpeg2 by someone who is not maintainer in the devel project (multimedia:libs). Please review


Maintenance Bot's avatar

maintbot added as a reviewer

Submission for ffmpeg by someone who is not maintainer in the devel project (multimedia:libs). Please review


Maintenance Bot's avatar

maintbot accepted review

ok


Jan Engelhardt's avatar

jengelh accepted review


Jan Engelhardt's avatar

jengelh accepted review


Jan Engelhardt's avatar

jengelh approved review


Johannes Segitz's avatar

jsegitz moved maintenance target to openSUSE:Maintenance:7243


Johannes Segitz's avatar

jsegitz accepted request

openSUSE Build Service is sponsored by