[Git][security-tracker-team/security-tracker][master] Add CVE-2021-28429/ffmpeg

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 12 20:45:28 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1c567954 by Salvatore Bonaccorso at 2023-08-12T21:43:54+02:00
Add CVE-2021-28429/ffmpeg

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -171110,7 +171110,9 @@ CVE-2021-28431
 CVE-2021-28430
 	RESERVED
 CVE-2021-28429 (Integer overflow vulnerability in av_timecode_make_string in libavutil ...)
-	TODO: check
+	- ffmpeg 7:4.4-5
+	[bullseye] - ffmpeg 7:4.3.3-0+deb11u1
+	NOTE: https://git.ffmpeg.org/gitweb/ffmpeg.git/commitdiff/c94875471e3ba3dc396c6919ff3ec9b14539cd71 (n4.3.3)
 CVE-2021-28428 (File upload vulnerability in HorizontCMS before 1.0.0-beta.3 via uploa ...)
 	NOT-FOR-US: HorizontCMS
 CVE-2021-28427 (Buffer Overflow vulnerability in XNView version 2.49.3, allows local a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c567954b01ec8ad83563ce2a5ea6056c0af3583

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c567954b01ec8ad83563ce2a5ea6056c0af3583
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230812/e07c6e74/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list