[Secure-testing-commits] r22429 - data/CVE

Raphael Geissert atomo64-guest at alioth.debian.org
Fri May 31 12:41:21 UTC 2013


Author: atomo64-guest
Date: 2013-05-31 12:41:20 +0000 (Fri, 31 May 2013)
New Revision: 22429

Modified:
   data/CVE/list
Log:
more info about ffmpeg 1.1 issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-05-31 11:45:23 UTC (rev 22428)
+++ data/CVE/list	2013-05-31 12:41:20 UTC (rev 22429)
@@ -7038,102 +7038,118 @@
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
 	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=23318a57358358e7a4dc551e830e4503f0638cfe
-CVE-2013-0859
+CVE-2013-0859 [libavcodec/tiff.c out of array access]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0858
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=6d1c5ea04af3e345232aa70c944de961061dab2d
+CVE-2013-0858 [libavcodec/atrac3.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0857
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=13451f5520ce6b0afde861b2285dda659f8d4fb4
+CVE-2013-0857 [libavcodec/iff.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0856
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=2fbb37b51bbea891392ad357baf8f3dff00bac05
+CVE-2013-0856 [libavcodec/alac.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0855
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=fd4f4923cce6a2cbf4f48640b4ac706e614a1594
+CVE-2013-0855 [libavcodec/alac.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0854
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=3920d1387834e2bc334aff9f518f4beb24e470bd
+CVE-2013-0854 [libavcodec/mjpegdec.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.1
-CVE-2013-0853
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=1f41cffe1e3e79620f587545bdfcbd7e6e68ed29
+CVE-2013-0853 [libavcodec/wavpack.c out of array access]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0852
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=be818df547c3b0ae4fadb50fd210139a8636706a
+CVE-2013-0852 [libavcodec/pgssubdec.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0851
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=c0d68be555f5858703383040e04fcd6529777061
+CVE-2013-0851 [libavcodec/eamad.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0850
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=63ac64864c6e0e84355aa3caa5b92208997a9a8d
+CVE-2013-0850 [libavcodec/h264.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0849
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=d6c184880ee2e09fd68c0ae217173832cee5afc1
+CVE-2013-0849 [libavcodec/roqvideodec.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0848
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=3ae610451170cd5a28b33950006ff0bd23036845
+CVE-2013-0848 [libavcodec/huffyuv.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0847
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=6abb9a901fca27da14d4fffbb01948288b5da3ba
+CVE-2013-0847 [libavformat/id3v2.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.1
-CVE-2013-0846
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=10416a4d56fa8a89784e4fb62099c3cab17a9952
+CVE-2013-0846  [libavcodec/qdm2.c out of array accesses]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.1
-CVE-2013-0845
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=a7ee6281f7ef1c29284e3a4cadfe0f227ffde1ed
+CVE-2013-0845 [libavcodec/alsdec.c]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
-CVE-2013-0844
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=0ceca269b66ec12a23bf0907bd2c220513cdbf16
+CVE-2013-0844 [libavcodec/adpcm.c out of array access]
 	RESERVED
 	- ffmpeg <removed>
 	- libav <unfixed>
 	TODO: check
 	NOTE: fixed in ffmpeg 1.0.4
+	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=f18c873ab5ee3c78d00fdcc2582b39c133faecb4
 CVE-2013-0843 (content/renderer/media/webrtc_audio_renderer.cc in Google Chrome ...)
 	- chromium-browser <not-affected> (MacOS-specific)
 CVE-2013-0842 (Google Chrome before 24.0.1312.56 does not properly handle %00 ...)




More information about the Secure-testing-commits mailing list