summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Sebastian Ramacher [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
Merge libav (6:11.12-1~deb8u1) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Debian Multimedia Maintainers [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
configure-disable-ebx-gcc-4.9
Gbp-Pq: Name 02-configure-disable-ebx-gcc-4.9.patch
Sebastian Ramacher [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
libav (6:11.12-1~deb8u1) jessie-security; urgency=medium
* New upstream release.
- smacker: add sanity check for length in smacker_decode_tree()
(CVE-2017-16803)
[dgit import unpatched libav 6:11.12-1~deb8u1]
Sebastian Ramacher [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
Import libav_11.12.orig.tar.xz
[dgit import orig libav_11.12.orig.tar.xz]
Sebastian Ramacher [Sun, 18 Feb 2018 20:20:56 +0000 (20:20 +0000)]
Import libav_11.12-1~deb8u1.debian.tar.xz
[dgit import tarball libav 6:11.12-1~deb8u1 libav_11.12-1~deb8u1.debian.tar.xz]
Hugo Lefeuvre [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
Merge libav (6:11.11-1~deb8u1) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Debian Multimedia Maintainers [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
configure-disable-ebx-gcc-4.9
Gbp-Pq: Name 02-configure-disable-ebx-gcc-4.9.patch
Hugo Lefeuvre [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
libav (6:11.11-1~deb8u1) jessie-security; urgency=medium
* Non-maintainer upload by the Security Team.
* New upstream release fixing multiple security issues.
- dfa: Disallow odd width/height and add proper bounds check for DDS1 chunks
(CVE-2017-9992)
- pictor: Correctly check frame dimensions (CVE-2017-7862)
- h264_cavlc: check the value of run_before
- dvbsubdec: improve error checking
- dvbsubdec: Fixed segfault when decoding subtitles
- rmdec: don't ignore the return value of av_get_packet()
- caf: add an Opus tag
- yadif: Account for the buffer alignment while processing the frame edges
- mov: log and return early on non-positive stsd entry counts
- arm: Fix SIGBUS on ARM when compiled with binutils 2.29
- smacker: return meaningful error codes on failure
- smacker: fix integer overflow with pts_inc
- mm: Skip unexpected audio packets
- aacsbr: Turnoff in the event of over read.
- smacker: Check that the data size is a multiple of a sample vector
(CVE-2015-8365)
- build: Add an option for passing linker flags to the shared library build
- flv: Validate the packet size
- mjpeg: Report non-3 component rgb lossless as not supported
- vc1dec: raise an error if sprite picture data is missing
- doc: Drop the legacy symlink to README
[dgit import unpatched libav 6:11.11-1~deb8u1]
Hugo Lefeuvre [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
Import libav_11.11.orig.tar.gz
[dgit import orig libav_11.11.orig.tar.gz]
Hugo Lefeuvre [Sat, 21 Oct 2017 13:08:38 +0000 (14:08 +0100)]
Import libav_11.11-1~deb8u1.debian.tar.xz
[dgit import tarball libav 6:11.11-1~deb8u1 libav_11.11-1~deb8u1.debian.tar.xz]
Sebastian Ramacher [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
Merge libav (6:11.9-1~deb8u1) import into refs/heads/workingbranch
Debian Multimedia Maintainers [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Debian Multimedia Maintainers [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
configure-disable-ebx-gcc-4.9
Gbp-Pq: Name 02-configure-disable-ebx-gcc-4.9.patch
Sebastian Ramacher [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
libav (6:11.9-1~deb8u1) jessie-security; urgency=medium
* New upstream release.
- mpegvideo_parser: avoid signed overflow in bitrate calculation.
(CVE-2016-9821)
- mpeg12dec: avoid signed overflow in bitrate calculation. (CVE-2016-9822)
* debian/patches/mpegvideo_motion-Handle-edge-emulation-even-without-.patch:
Removed, included upstream.
[dgit import unpatched libav 6:11.9-1~deb8u1]
Sebastian Ramacher [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
Import libav_11.9.orig.tar.xz
[dgit import orig libav_11.9.orig.tar.xz]
Sebastian Ramacher [Sun, 23 Apr 2017 16:36:31 +0000 (16:36 +0000)]
Import libav_11.9-1~deb8u1.debian.tar.xz
[dgit import tarball libav 6:11.9-1~deb8u1 libav_11.9-1~deb8u1.debian.tar.xz]
Michael Niedermayer [Tue, 12 Nov 2013 15:11:42 +0000 (16:11 +0100)]
mpegvideo_motion: Handle edge emulation even without unrestricted_mv
Fix out of bounds read.
Bug-Id: 959
Found by: F4B3CD@STARLAB and Agostino Sarubbo
Signed-off-by: Vittorio Giovara <vittorio.giovara@gmail.com>
(cherry picked from commit
136f55207521f0b03194ef5b55ba70f1635d6aee)
Signed-off-by: Diego Biurrun <diego@biurrun.de>
Gbp-Pq: Name mpegvideo_motion-Handle-edge-emulation-even-without-.patch
Debian Multimedia Maintainers [Sat, 24 Sep 2016 13:23:39 +0000 (13:23 +0000)]
disable-configuration-warnings
Gbp-Pq: Name 03-disable-configuration-warnings.patch
Debian Multimedia Maintainers [Sat, 24 Sep 2016 13:23:39 +0000 (13:23 +0000)]
configure-disable-ebx-gcc-4.9
Gbp-Pq: Name 02-configure-disable-ebx-gcc-4.9.patch
Sebastian Ramacher [Sat, 24 Sep 2016 13:23:39 +0000 (13:23 +0000)]
libav (6:11.8-1~deb8u1) jessie-security; urgency=medium
* New upstream release.
* debian/upstream-signing-key.pgp: Update upstream signing key.
* debian/patches/mpegvideo_motion-Handle-edge-emulation-even-without-.patch:
Fix NULL pointer dereference in put_no_rnd_pixels8_xy2_mmx. (CVE-2016-7424)
[dgit import unpatched libav 6:11.8-1~deb8u1]
Sebastian Ramacher [Sat, 24 Sep 2016 13:23:39 +0000 (13:23 +0000)]
Import libav_11.8.orig.tar.xz
[dgit import orig libav_11.8.orig.tar.xz]
Sebastian Ramacher [Sat, 24 Sep 2016 13:23:39 +0000 (13:23 +0000)]
Import libav_11.8-1~deb8u1.debian.tar.xz
[dgit import tarball libav 6:11.8-1~deb8u1 libav_11.8-1~deb8u1.debian.tar.xz]