[Git][security-tracker-team/security-tracker][master] new ffmpeg issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sat Apr 27 19:44:04 BST 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a92ad0de by Moritz Muehlenhoff at 2024-04-27T20:43:48+02:00
new ffmpeg issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -176,7 +176,12 @@ CVE-2024-1789 (The WP SMTP plugin for WordPress is vulnerable to SQL Injection v
 CVE-2024-0740 (Eclipse Target Management: Terminal and Remote System Explorer (RSE) v ...)
 	NOT-FOR-US: Eclipse Target Management: Terminal and Remote System Explorer
 CVE-2023-51794 (Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a ...)
-	TODO: check
+	[experimental] - ffmpeg 7:7.0-1
+	- ffmpeg <unfixed>
+	[bookworm] - ffmpeg <postponed> (Pick up when fixed in 5.1.x)
+	[bullseye] - ffmpeg <postponed> (Pick up when fixed in 4.3.x)
+	NOTE: https://trac.ffmpeg.org/ticket/10746
+	NOTE: Fixed in https://github.com/ffmpeg/FFmpeg/commit/50f0f8c53c818f73fe2d752708e2fa9d2a2d8a07 (n7.0)
 CVE-2023-51365 (A path traversal vulnerability has been reported to affect several QNA ...)
 	NOT-FOR-US: QNAP
 CVE-2023-51364 (A path traversal vulnerability has been reported to affect several QNA ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a92ad0de956889c8b5b6a56f5a669d9e69e52d09

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a92ad0de956889c8b5b6a56f5a669d9e69e52d09
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240427/eb0e39de/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list