[Secure-testing-commits] r55600 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Sep 9 09:33:48 UTC 2017


Author: carnil
Date: 2017-09-09 09:33:48 +0000 (Sat, 09 Sep 2017)
New Revision: 55600

Modified:
   data/CVE/list
Log:
Add CVE-2017-14225/ffmpeg

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-09 09:30:44 UTC (rev 55599)
+++ data/CVE/list	2017-09-09 09:33:48 UTC (rev 55600)
@@ -15,7 +15,8 @@
 	NOTE: https://sourceforge.net/p/libwpd/code/ci/0329a9c57f9b3b0efa0f09a5235dfd90236803a5/
 	NOTE: https://sourceforge.net/p/libwpd/code/ci/f40827b3eae260ce657c67d9fecc855b09dea3c3/
 CVE-2017-14225 (The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg ...)
-	TODO: check
+	- ffmpeg <unfixed>
+	NOTE: https://github.com/FFmpeg/FFmpeg/commit/837cb4325b712ff1aab531bf41668933f61d75d2
 CVE-2017-14224 (A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ...)
 	TODO: check
 CVE-2017-14223 (In libavformat/asfdec_f.c in FFmpeg 3.3.3, a DoS in ...)




More information about the Secure-testing-commits mailing list