You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa ffmpeg

Sigurnosni nedostaci programskog paketa ffmpeg

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LDE

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA512

– ————————————————————————-
Debian Security Advisory DSA-4249-1 security@debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
July 17, 2018 https://www.debian.org/security/faq
– ————————————————————————-

Package : ffmpeg
CVE ID : CVE-2018-6392 CVE-2018-6621 CVE-2018-7557 CVE-2018-10001
CVE-2018-12458 CVE-2018-13300 CVE-2018-13302

Several vulnerabilities have been discovered in the FFmpeg multimedia
framework, which could result in denial of service or potentially the
execution of arbitrary code if malformed files/streams are processed.

For the stable distribution (stretch), these problems have been fixed in
version 7:3.2.11-1~deb9u1.

We recommend that you upgrade your ffmpeg packages.

For the detailed security status of ffmpeg please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/ffmpeg

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
—–BEGIN PGP SIGNATURE—–
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=j/Rw
—–END PGP SIGNATURE—–

AutorPetar Bertok
Cert idNCERT-REF-2018-07-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa blender

Otkriveni su sigurnosni nedostaci u programskom paketu blender za operacijski sustav Debian. Otkriveni nedostaci potencijalnim napadačima omogućuju stjecanje viših privilegija,...

Close