[FFmpeg-trac] #8973(undetermined:closed): ffmpeg dependency security bug

FFmpeg trac at avcodec.org
Fri Nov 13 03:18:18 EET 2020


#8973: ffmpeg dependency security bug
-------------------------------------+-------------------------------------
             Reporter:  fastfading   |                    Owner:
                 Type:  defect       |                   Status:  closed
             Priority:  normal       |                Component:
                                     |  undetermined
              Version:  git-master   |               Resolution:  invalid
             Keywords:               |               Blocked By:
             Blocking:               |  Reproduced by developer:  0
Analyzed by developer:  0            |
-------------------------------------+-------------------------------------

Comment (by fastfading):

 for openjpeg  current version and  Latest version are 2.3.1
 but others are upgradable.




 {{{
 Lib Bug  ID             Version Latest Known Version
 openjpeg CVE-2016-7163  2.3.1   2.3.1
 libpng   CVE-2019-7317  1.6.36  1.6.37
 bzip2    CVE-2019-12900 1.0.6   1.0.8
 expat    CVE-2019-15903 2.2.6   2.2.10
 alsa     CVE-2019-13351 1.0.17
 }}}

--
Ticket URL: <https://trac.ffmpeg.org/ticket/8973#comment:2>
FFmpeg <https://ffmpeg.org>
FFmpeg issue tracker


More information about the FFmpeg-trac mailing list