[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-35965/ffmpeg
Salvatore Bonaccorso
carnil at debian.org
Tue Jan 12 18:17:49 GMT 2021
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
563f0b02 by Salvatore Bonaccorso at 2021-01-12T19:15:27+01:00
Add Debian bug reference for CVE-2020-35965/ffmpeg
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -5376,7 +5376,7 @@ CVE-2021-21495 (MK-AUTH through 19.01 K4.9 allows CSRF for password changes via
CVE-2021-21494 (MK-AUTH through 19.01 K4.9 allows XSS via the admin/logs_ajax.php tipo ...)
NOT-FOR-US: MK-AUTH
CVE-2020-35965 (decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds ...)
- - ffmpeg <unfixed>
+ - ffmpeg <unfixed> (bug #979999)
NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=26532
NOTE: https://github.com/FFmpeg/FFmpeg/commit/3e5959b3457f7f1856d997261e6ac672bba49e8b
NOTE: https://github.com/FFmpeg/FFmpeg/commit/b0a8b40294ea212c1938348ff112ef1b9bf16bb3
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/563f0b021ba4d72d214b5893c10e8df89794eee2
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/563f0b021ba4d72d214b5893c10e8df89794eee2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210112/f91e05dd/attachment.html>
More information about the debian-security-tracker-commits
mailing list