[Secure-testing-commits] r58512 - data/CVE
Ola Lundqvist
opal at moszumanska.debian.org
Wed Dec 13 09:12:31 UTC 2017
Author: opal
Date: 2017-12-13 09:12:31 +0000 (Wed, 13 Dec 2017)
New Revision: 58512
Modified:
data/CVE/list
Log:
Triage results.
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-12-13 09:10:15 UTC (rev 58511)
+++ data/CVE/list 2017-12-13 09:12:31 UTC (rev 58512)
@@ -33,6 +33,7 @@
RESERVED
CVE-2017-17555 (The swri_audio_convert function in audioconvert.c in FFmpeg ...)
- aubio <unfixed> (bug #884232)
+ [wheezy] - aubio <no-dsa> (Minor issue)
NOTE: https://github.com/IvanCql/vulnerability/blob/master/An%20NULL%20pointer%20dereference(DoS)%20Vulnerability%20was%20found%20in%20function%20swri_audio_convert%20of%20ffmpeg%20libswresample.md
NOTE: aubio initializes libswresample with 2 channels and then passes data
NOTE: that contains just one channel. Not an issue in src:ffmpeg.
More information about the Secure-testing-commits
mailing list