[Secure-testing-commits] r28088 - data/CVE

Reinhard Tartler siretart at moszumanska.debian.org
Mon Aug 4 23:10:30 UTC 2014


Author: siretart
Date: 2014-08-04 23:10:30 +0000 (Mon, 04 Aug 2014)
New Revision: 28088

Modified:
   data/CVE/list
Log:
CVE-2013-7021 libav

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-04 18:07:11 UTC (rev 28087)
+++ data/CVE/list	2014-08-04 23:10:30 UTC (rev 28088)
@@ -12648,10 +12648,11 @@
 	NOTE: Only present in libav trunk
 CVE-2013-7021 (The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 ...)
 	- ffmpeg <not-affected> (Vulnerable code not present)
-	- libav <unfixed>
+	- libav <not-affected>
 	[wheezy] - libav <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/FFmpeg/FFmpeg/commit/cdd5df8189ff1537f7abe8defe971f80602cc2d2
 	NOTE: https://trac.ffmpeg.org/ticket/2905
+	NOTE: [Anton] appears to not be present in any version of libav
 CVE-2013-7020 (The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 ...)
 	- ffmpeg <end-of-life> (Backports to 0.5.x not useful, too many checks missing)
 	- libav <undetermined>




More information about the Secure-testing-commits mailing list