[Secure-testing-commits] r23197 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Aug 5 16:40:35 UTC 2013


Author: jmm
Date: 2013-08-05 16:40:34 +0000 (Mon, 05 Aug 2013)
New Revision: 23197

Modified:
   data/CVE/list
Log:
ffmpeg/libav triage


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-05 16:11:19 UTC (rev 23196)
+++ data/CVE/list	2013-08-05 16:40:34 UTC (rev 23197)
@@ -10552,9 +10552,9 @@
 	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=11c99c78bafa77f679a1a3ba06ad00984b9a4cae
 CVE-2013-0866 [libavcodec/aacdec.c out of array accesses]
 	RESERVED
-	- ffmpeg <removed>
+	- ffmpeg <not-affected> (Code in 0.5 is different/not affected)
 	- libav 6:0.8.7-1 (bug #717009)
-	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=96f452ac647dae33c53c242ef3266b65a9beafb6
+	NOTE: Fix in ffmpeg: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=96f452ac647dae33c53c242ef3266b65a9beafb6
 	NOTE: Fix in libav: http://git.libav.org/?p=libav.git;a=commit;h=a943a132f36f4df8fe2f749744677b71984abce7
 CVE-2013-0865 [libavcodec/vqavideo.c out of array writes]
 	RESERVED
@@ -10597,7 +10597,8 @@
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed> (bug #717009)
-	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=13451f5520ce6b0afde861b2285dda659f8d4fb4
+	NOTE: Fix in ffmpeg: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=13451f5520ce6b0afde861b2285dda659f8d4fb4
+	NOTE: Fix in libav: http://git.libav.org/?p=libav.git;a=commit;h=50cf5a7fb78846fc39b3ecdaa896a10bcd74da2a
 CVE-2013-0857 [libavcodec/iff.c]
 	RESERVED
 	- ffmpeg <not-affected> (IFF PBM/ILBM bitmap decoder not present in 0.5 ffmpeg)




More information about the Secure-testing-commits mailing list