[Secure-testing-commits] r50937 - in data: . CVE

Henri Salo fgeek-guest at moszumanska.debian.org
Sun Apr 23 06:33:44 UTC 2017


Author: fgeek-guest
Date: 2017-04-23 06:33:44 +0000 (Sun, 23 Apr 2017)
New Revision: 50937

Modified:
   data/CVE/list
   data/embedded-code-copies
Log:
libbpg is embedded in ffmpeg

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-23 06:02:53 UTC (rev 50936)
+++ data/CVE/list	2017-04-23 06:33:44 UTC (rev 50937)
@@ -15910,6 +15910,7 @@
 CVE-2017-2575 [NULL pointer dereference in image_alloc]
 	RESERVED
 	NOT-FOR-US: libbpg
+	NOTE: The libbpg library is not packaged in Debian but seem embedded in ffmpeg
 CVE-2017-2574
 	RESERVED
 CVE-2017-2573

Modified: data/embedded-code-copies
===================================================================
--- data/embedded-code-copies	2017-04-23 06:02:53 UTC (rev 50936)
+++ data/embedded-code-copies	2017-04-23 06:33:44 UTC (rev 50937)
@@ -376,6 +376,7 @@
 	- audacity 1.3.7-2 (embed; bug #512278)
 	- chromium-browser 44.0.2403.157-1 (fork; bug #763632)
 	- libav <unfixed>
+	- libbpg <unknown> (embed)
 
 faad2
 	- mplayer 1.0~rc2-20 (embed)




More information about the Secure-testing-commits mailing list