[Git][security-tracker-team/security-tracker][master] two ffmpeg issues n/a in stretch

Moritz Muehlenhoff jmm at debian.org
Sun Jul 29 22:19:37 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fc293fc0 by Moritz Muehlenhoff at 2018-07-29T21:19:03Z
two ffmpeg issues n/a in stretch
one ffmpeg issue already fixed in 3.2.11

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -424,10 +424,12 @@ CVE-2018-1999016 (Pydio version 8.2.0 and earlier contains a Cross Site Scriptin
 	- ajaxplorer <itp> (bug #668381)
 CVE-2018-1999015 (FFmpeg before commit 5aba5b89d0b1d73164d3b81764828bb8b20ff32a contains ...)
 	- ffmpeg <unfixed>
+	[stretch] - ffmpeg <not-affected> (Vulnerable code not present)
 	- libav <undetermined>
 	NOTE: https://github.com/FFmpeg/FFmpeg/commit/5aba5b89d0b1d73164d3b81764828bb8b20ff32
 CVE-2018-1999014 (FFmpeg before commit bab0716c7f4793ec42e05a5aa7e80d82a0dd4e75 contains ...)
 	- ffmpeg <unfixed>
+	[stretch] - ffmpeg <not-affected> (Vulnerable code not present)
 	- libav <undetermined>
 	NOTE: https://github.com/FFmpeg/FFmpeg/commit/bab0716c7f4793ec42e05a5aa7e80d82a0dd4e7
 CVE-2018-1999013 (FFmpeg before commit a7e032a277452366771951e29fd0bf2bd5c029f0 contains ...)


=====================================
data/DSA/list
=====================================
--- a/data/DSA/list
+++ b/data/DSA/list
@@ -26,7 +26,7 @@
 	{CVE-2018-12895}
 	[stretch] - wordpress 4.7.5+dfsg-2+deb9u4
 [17 Jul 2018] DSA-4249-1 ffmpeg - security update
-	{CVE-2018-6392 CVE-2018-6621 CVE-2018-7557 CVE-2018-10001 CVE-2018-12458 CVE-2018-13300 CVE-2018-13302}
+	{CVE-2018-6392 CVE-2018-6621 CVE-2018-7557 CVE-2018-10001 CVE-2018-12458 CVE-2018-13300 CVE-2018-13302 CVE-2018-1999013}
 	[stretch] - ffmpeg 7:3.2.11-1~deb9u1
 [17 Jul 2018] DSA-4248-1 blender - security update
 	{CVE-2017-2899 CVE-2017-2900 CVE-2017-2901 CVE-2017-2902 CVE-2017-2903 CVE-2017-2904 CVE-2017-2905 CVE-2017-2906 CVE-2017-2907 CVE-2017-2908 CVE-2017-2918 CVE-2017-12081 CVE-2017-12082 CVE-2017-12086 CVE-2017-12099 CVE-2017-12100 CVE-2017-12101 CVE-2017-12102 CVE-2017-12103 CVE-2017-12104 CVE-2017-12105}



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fc293fc0af48873147a89514d2d6781b0a29ee74

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fc293fc0af48873147a89514d2d6781b0a29ee74
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180729/014fc891/attachment.html>


More information about the debian-security-tracker-commits mailing list