libde265 (1.0.11-1+deb12u2) bookworm; urgency=medium
authorThorsten Alteholz <debian@alteholz.de>
Fri, 29 Dec 2023 22:03:02 +0000 (23:03 +0100)
committerThorsten Alteholz <debian@alteholz.de>
Fri, 29 Dec 2023 22:03:02 +0000 (23:03 +0100)
commit6fd9d0eb584e0281dc783bc5e1376ace666e23f4
tree625c84376583105bda585dfcbb37732dd5c94554
parent8da2b66b4b3b4c52f657a5ab455b0e3d4f0aa389
parent0111a78dd79f0e6ac8241f2198f3d5ef3f2339fd
libde265 (1.0.11-1+deb12u2) bookworm; urgency=medium

  * Non-maintainer upload by the LTS Team.
    (Closes: #1059275)
  * CVE-2023-49465
    heap-buffer-overflow in derive_spatial_luma_vector_prediction()
  * CVE-2023-49467
    heap-buffer-overflow in derive_combined_bipredictive_merging_candidates()
  * CVE-2023-49468
    global buffer overflow in read_coding_unit()

[dgit import unpatched libde265 1.0.11-1+deb12u2]
28 files changed:
debian/.gitlab-ci.yml
debian/changelog
debian/control
debian/copyright
debian/gbp.conf
debian/libde265-0.install
debian/libde265-0.symbols
debian/libde265-dev.docs
debian/libde265-dev.install
debian/libde265-examples.install
debian/not-installed
debian/patches/CVE-2023-27102.patch
debian/patches/CVE-2023-27103.patch
debian/patches/CVE-2023-43887.patch
debian/patches/CVE-2023-47471.patch
debian/patches/CVE-2023-49465.patch
debian/patches/CVE-2023-49467.patch
debian/patches/CVE-2023-49468.patch
debian/patches/disable_tools.patch
debian/patches/only_export_decoder_api.patch
debian/patches/recycle_sps_if_possible.patch
debian/patches/reject_reference_pics_from_different_sps.patch
debian/patches/series
debian/patches/use_sps_from_the_image.patch
debian/rules
debian/source/format
debian/upstream/metadata
debian/watch