[Git][security-tracker-team/security-tracker][master] [libav triaging] data/CVE/list: Add ffmpeg upstream commit that fixes CVE-2015-6761.
Mike Gabriel
sunweaver at debian.org
Fri Nov 30 15:23:03 GMT 2018
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker
Commits:
503c4f25 by Mike Gabriel at 2018-11-30T15:22:39Z
[libav triaging] data/CVE/list: Add ffmpeg upstream commit that fixes CVE-2015-6761.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -144315,7 +144315,7 @@ CVE-2015-6761 (The update_dimensions function in libavcodec/vp8.c in FFmpeg thro
{DSA-3376-1}
- ffmpeg 7:2.8.1-1
[squeeze] - ffmpeg <end-of-life> (Not supported in Squeeze LTS)
- - libav <undetermined>
+ - libav
[wheezy] - libav <not-affected> (Vulnerable code not present)
- chromium-browser 44.0.2403.157-1
[wheezy] - chromium-browser <end-of-life>
@@ -144324,6 +144324,7 @@ CVE-2015-6761 (The update_dimensions function in libavcodec/vp8.c in FFmpeg thro
NOTE: https://code.google.com/p/chromium/issues/detail?id=532967
NOTE: Starting with 44.0.2403.157-1 chromium uses the ffmpeg system copy
NOTE: It looks like this relates to multithreaded decoding of VPx codecs, which is not implemented in the squeeze version. But I'm not sure as the second bug report is still private.
+ NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=dabea74d0e82ea80cd344f630497cafcb3ef872c
CVE-2015-6760 (The Image11::map function in renderer/d3d/d3d11/Image11.cpp in ...)
{DSA-3376-1}
- chromium-browser 46.0.2490.71-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/503c4f254f6c78e0aa57be1fcd2164f4225b39ff
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/503c4f254f6c78e0aa57be1fcd2164f4225b39ff
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181130/1c882681/attachment.html>
More information about the debian-security-tracker-commits
mailing list