[Git][security-tracker-team/security-tracker][master] ffmpeg updates

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed May 26 18:23:46 BST 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7d6c9052 by Moritz Muehlenhoff at 2021-05-26T19:23:27+02:00
ffmpeg updates

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -60327,35 +60327,39 @@ CVE-2020-20455
 CVE-2020-20454
 	RESERVED
 CVE-2020-20453 (FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccod ...)
-	TODO: check
+	- ffmpeg <unfixed> (unimportant)
+	NOTE: https://trac.ffmpeg.org/ticket/8003
+	NOTE: Negligible security impact
 CVE-2020-20452
 	RESERVED
 CVE-2020-20451 (Denial of Service issue in FFmpeg 4.2 due to resource management error ...)
-	- ffmpeg 7:4.3-2
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://trac.ffmpeg.org/ticket/8094
 	NOTE: https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=21265f42ecb265debe9fec1dbfd0cb7de5a8aefb
+	NOTE: Negligible security impact
 CVE-2020-20450 (FFmpeg 4.2 is affected by null pointer dereference passed as argument  ...)
 	[experimental] - ffmpeg 7:4.4-1
-	- ffmpeg <unfixed>
+	- ffmpeg <unfixed> (unimportant)
 	NOTE: https://trac.ffmpeg.org/ticket/7993
 	NOTE: https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=5400e4a50c61e53e1bc50b3e77201649bbe9c510
-	TODO: check details
+	NOTE: https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=3865b1952e5cf993b016d83ba78fe1deb63bbfad (4.3)
+	NOTE: Negligible security impact
 CVE-2020-20449
 	RESERVED
 CVE-2020-20448 (FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/rate ...)
-	- ffmpeg <unfixed>
+	- ffmpeg <unfixed> (unimportant)
 	NOTE: https://trac.ffmpeg.org/ticket/7990
-	TODO: check
+	NOTE: Negligible security impact
 CVE-2020-20447
 	RESERVED
 CVE-2020-20446 (FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy ...)
-	- ffmpeg <unfixed>
+	- ffmpeg <unfixed> (unimportant)
 	NOTE: https://trac.ffmpeg.org/ticket/7995
-	TODO: check
+	NOTE: Negligible security impact
 CVE-2020-20445 (FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, ...)
-	- ffmpeg <unfixed>
+	- ffmpeg <unfixed> (unimportant)
 	NOTE: https://trac.ffmpeg.org/ticket/7996
-	TODO: check
+	NOTE: Negligible security impact
 CVE-2020-20444
 	RESERVED
 CVE-2020-20443



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7d6c9052b3316fb9a53a78423af87d921396525b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7d6c9052b3316fb9a53a78423af87d921396525b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210526/ab6894cc/attachment.htm>


More information about the debian-security-tracker-commits mailing list