[Secure-testing-commits] r22427 - data/CVE

Raphael Geissert atomo64-guest at alioth.debian.org
Fri May 31 10:07:31 UTC 2013


Author: atomo64-guest
Date: 2013-05-31 10:07:31 +0000 (Fri, 31 May 2013)
New Revision: 22427

Modified:
   data/CVE/list
Log:
more info about ffmpeg 1.1.2 and 1.1.1 issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-05-31 09:23:22 UTC (rev 22426)
+++ data/CVE/list	2013-05-31 10:07:31 UTC (rev 22427)
@@ -6959,72 +6959,84 @@
 	{DSA-2632-1}
 	- linux 3.2.39-1
 	- linux-2.6 <removed>
-CVE-2013-0870
+CVE-2013-0870 [libavcodec/vp3.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.2
-CVE-2013-0869
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=14c8ee00ffd9d45e6e0c6f11a957ce7e56f7eb3a
+CVE-2013-0869 [libavcodec/h264.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.1.2
-CVE-2013-0868
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=695af8eed642ff0104834495652d1ee784a4c14d
+CVE-2013-0868 [libavcodec/huffyuvdec.c out of array writes]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0867
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=f67a0d115254461649470452058fa3c28c0df294
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=0dfc01c2bbf4b71bb56201bc4a393321e15d1b31
+CVE-2013-0867 [libavcodec/h264.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.1.2
-CVE-2013-0866
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=11c99c78bafa77f679a1a3ba06ad00984b9a4cae
+CVE-2013-0866 [libavcodec/aacdec.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0865
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=96f452ac647dae33c53c242ef3266b65a9beafb6
+CVE-2013-0865 [libavcodec/vqavideo.c out of array writes]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0864
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=ab6c9332bfa1e20127a16392a0b85a4aa4840889
+CVE-2013-0864 [libavcodec/gifdec.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.1.2
-CVE-2013-0863
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=c10350358da58600884292c08a8690289b81de29
+CVE-2013-0863 [libavcodec/sanm.c buffer overflow]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0862
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=7357ca900efcf829de4cce4cec6ddc286526d417
+CVE-2013-0862 [libavcodec/sanm.c integer overflows and out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0861
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=49b729d3af8464de431362e6c5b3027102bc2f88
+CVE-2013-0861 [libavcodec/utils.c memory corruption]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0860
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=d270c3202539e8364c46410e15f7570800e33343
+CVE-2013-0860 [libavcodec/error_resilience.c state inconsistency and null pointer deref]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=23318a57358358e7a4dc551e830e4503f0638cfe
 CVE-2013-0859
 	RESERVED
 	- ffmpeg <removed>




More information about the Secure-testing-commits mailing list