[Git][security-tracker-team/security-tracker][master] Revert "[libav triaging] data/CVE/list: Add ffmpeg upstream commit that fixes CVE-2015-6761."
Moritz Muehlenhoff
jmm at debian.org
Fri Nov 30 15:29:00 GMT 2018
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ceb72cc6 by Moritz Muehlenhoff at 2018-11-30T15:28:02Z
Revert "[libav triaging] data/CVE/list: Add ffmpeg upstream commit that fixes CVE-2015-6761."
This reverts commit 503c4f254f6c78e0aa57be1fcd2164f4225b39ff.
Everyone working on the trackers needs to install the syntax check git hook.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -144315,7 +144315,7 @@ CVE-2015-6761 (The update_dimensions function in libavcodec/vp8.c in FFmpeg thro
{DSA-3376-1}
- ffmpeg 7:2.8.1-1
[squeeze] - ffmpeg <end-of-life> (Not supported in Squeeze LTS)
- - libav
+ - libav <undetermined>
[wheezy] - libav <not-affected> (Vulnerable code not present)
- chromium-browser 44.0.2403.157-1
[wheezy] - chromium-browser <end-of-life>
@@ -144324,7 +144324,6 @@ CVE-2015-6761 (The update_dimensions function in libavcodec/vp8.c in FFmpeg thro
NOTE: https://code.google.com/p/chromium/issues/detail?id=532967
NOTE: Starting with 44.0.2403.157-1 chromium uses the ffmpeg system copy
NOTE: It looks like this relates to multithreaded decoding of VPx codecs, which is not implemented in the squeeze version. But I'm not sure as the second bug report is still private.
- NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=dabea74d0e82ea80cd344f630497cafcb3ef872c
CVE-2015-6760 (The Image11::map function in renderer/d3d/d3d11/Image11.cpp in ...)
{DSA-3376-1}
- chromium-browser 46.0.2490.71-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ceb72cc6931e65d94fcdde8c03cf70d72edc7a84
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ceb72cc6931e65d94fcdde8c03cf70d72edc7a84
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181130/2425b0d1/attachment.html>
More information about the debian-security-tracker-commits
mailing list