[Secure-testing-commits] r31710 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Jan 26 23:15:53 UTC 2015


Author: jmm
Date: 2015-01-26 23:15:53 +0000 (Mon, 26 Jan 2015)
New Revision: 31710

Modified:
   data/CVE/list
Log:
new ffmpeg/libav issues spotted by chromium  people


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-26 23:00:27 UTC (rev 31709)
+++ data/CVE/list	2015-01-26 23:15:53 UTC (rev 31710)
@@ -8012,6 +8012,11 @@
 CVE-2014-7937 (Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before ...)
 	- chromium-browser 40.0.2214.91-1
 	[squeeze] - chromium-browser <end-of-life>
+	- ffmpeg 7:2.4.2-1
+	[squeeze] - ffmpeg <end-of-life>
+	- libav <unfixed>
+        NOTE: ffmpeg: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=8c50704ebf1777bee76772c4835d9760b3721057
+        NOTE: libav: needed
 CVE-2014-7936 (Use-after-free vulnerability in the ZoomBubbleView::Close function in ...)
 	- chromium-browser 40.0.2214.91-1
 	[squeeze] - chromium-browser <end-of-life>
@@ -8024,6 +8029,11 @@
 CVE-2014-7933 (Use-after-free vulnerability in the matroska_read_seek function in ...)
 	- chromium-browser 40.0.2214.91-1
 	[squeeze] - chromium-browser <end-of-life>
+	- ffmpeg 7:2.5.1-1
+	[squeeze] - ffmpeg <end-of-life>
+	- libav <unfixed>
+        NOTE: ffmpeg: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=490a3ebf36821b81f73e34ad3f554cb523dd2682  
+        NOTE: libav: https://git.libav.org/?p=libav.git;a=commit;h=490a3ebf36821b81f73e34ad3f554cb523dd2682
 CVE-2014-7932 (Use-after-free vulnerability in the Element::detach function in ...)
 	- chromium-browser 40.0.2214.91-1
 	[squeeze] - chromium-browser <end-of-life>




More information about the Secure-testing-commits mailing list