[Git][security-tracker-team/security-tracker][master] mark a few ffmpeg ubsan issues as unimportant

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Oct 11 09:45:31 BST 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d20541e7 by Moritz Muehlenhoff at 2021-10-11T10:45:20+02:00
mark a few ffmpeg ubsan issues as unimportant

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9568,28 +9568,25 @@ CVE-2021-38096 (Coreip.dll in Corel PDF Fusion 2.6.2.0 is affected by an Out-of-
 CVE-2021-38095 (The REST API in Planview Spigit 4.5.3 allows remote unauthenticated at ...)
 	NOT-FOR-US: Planview Spigit
 CVE-2021-38094 (Integer Overflow vulnerability in function filter_sobel in libavfilter ...)
-	- ffmpeg 7:4.3-2
-	[buster] - ffmpeg <ignored> (Minor issue)
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/99f8d32129dd233d4eb2efa44678a0bc44869f23
 	NOTE: https://trac.ffmpeg.org/ticket/8263
+	NOTE: Negligible security impact
 CVE-2021-38093 (Integer Overflow vulnerability in function filter_robert in libavfilte ...)
-	- ffmpeg 7:4.3-2
-	[buster] - ffmpeg <ignored> (Minor issue)
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/99f8d32129dd233d4eb2efa44678a0bc44869f23
 	NOTE: https://trac.ffmpeg.org/ticket/8263
+	NOTE: Negligible security impact
 CVE-2021-38092 (Integer Overflow vulnerability in function filter_prewitt in libavfilt ...)
-	- ffmpeg 7:4.3-2
-	[buster] - ffmpeg <ignored> (Minor issue)
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/99f8d32129dd233d4eb2efa44678a0bc44869f23
 	NOTE: https://trac.ffmpeg.org/ticket/8263
 CVE-2021-38091 (Integer Overflow vulnerability in function filter16_sobel in libavfilt ...)
-	- ffmpeg 7:4.3-2
-	[buster] - ffmpeg <ignored> (Minor issue)
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/99f8d32129dd233d4eb2efa44678a0bc44869f23
 	NOTE: https://trac.ffmpeg.org/ticket/8263
 CVE-2021-38090 (Integer Overflow vulnerability in function filter16_roberts in libavfi ...)
-	- ffmpeg 7:4.3-2
-	[buster] - ffmpeg <ignored> (Minor issue)
+	- ffmpeg 7:4.3-2 (unimportant)
 	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/99f8d32129dd233d4eb2efa44678a0bc44869f23
 	NOTE: https://trac.ffmpeg.org/ticket/8263
 CVE-2021-38089



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d20541e7c9cc8b1733a7f7879738f73086a7ebe5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d20541e7c9cc8b1733a7f7879738f73086a7ebe5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211011/98247ef1/attachment.htm>


More information about the debian-security-tracker-commits mailing list