The branch, master has been updated
via 9a0b0a64ae42668225bc007472c9993b3c4b6cdc (commit)
from 98c5740f14cfe8c2b7fdfe81d691e2aa0b13a4c0 (commit)
- Log -----------------------------------------------------------------
commit 9a0b0a64ae42668225bc007472c9993b3c4b6cdc
Author: Michael Niedermayer <[email protected]>
AuthorDate: Fri Oct 17 16:24:40 2025 +0200
Commit: Michael Niedermayer <[email protected]>
CommitDate: Fri Oct 17 16:24:40 2025 +0200
web/security: Add CVE# that ubuntu has listed yesterday
These are CVE#s from USN-7823-1,
Information mappping these to commits is from debian and NIST
diff --git a/src/security b/src/security
index ea64661..0d5f8dd 100644
--- a/src/security
+++ b/src/security
@@ -73,6 +73,7 @@ Fixes following vulnerabilities:
<pre>
CVE-2024-7055 3faadbe2a27e74ff5bb5f7904ec27bb1f5287dc8
CVE-2024-35368, 4513300989502090c4fd6560544dce399a8cd53c (specific to builds
with --enable-rkmpp)
+CVE-2024-36619, 28c7094b25b689185155a6833caf2747b94774a4
</pre>
@@ -114,8 +115,13 @@ CVE-2023-50008, 5f87a68cf70dafeab2fb89b42e41a4c29053b89b,
ticket/10701
CVE-2024-28661, 66b50445cb36cf6adb49c2397362509aedb42c71
CVE-2024-31578, 3bb00c0a420c3ce83c6fafee30270d69622ccad7
CVE-2024-31582, 99debe5f823f45a482e1dc08de35879aa9c74bd2
+CVE-2024-35365, ced5c5fdb8634d39ca9472a2026b2d2fea16c4e5
+CVE-2024-35366, 0bed22d597b78999151e3bde0768b7fe763fc2a6
CVE-2024-35367, 09e6840cf7a3ee07a73c3ae88a020bf27ca1a667 (specific to builds
for ppc with altivec)
+CVE-2024-36613, 50d8e4f27398fd5778485a827d7a2817921f8540
+CVE-2024-36616, 86f73277bf014e2ce36dd2594f1e0fb8b3bd6661
CVE-2024-36617, d973fcbcc2f944752ff10e6a76b0b2d9329937a7
+CVE-2024-36618, 7a089ed8e049e3bfcb22de1250b86f2106060857
</pre>
@@ -226,6 +232,9 @@ CVE-2024-7272, a937b3c58babae893fb46b286a4792cd24a01d3d /
9903ba28c28ab18dc7b7b6
Fixes following vulnerabilities:
</p>
<pre>
+CVE-2024-35366, 4db0eb4653efad967ddcf71f564fd2f1169bafcb /
0bed22d597b78999151e3bde0768b7fe763fc2a6
+CVE-2024-36613, 1f6fcc64179377114b4ecc3b9f63bd5774a64edf /
50d8e4f27398fd5778485a827d7a2817921f8540
+CVE-2024-36616, a8beef67993aa267de87599007143d9f0ba67c23 /
86f73277bf014e2ce36dd2594f1e0fb8b3bd6661
CVE-2024-36617, f0e780370cc1c437d64f10d326b1d656ef490b5f /
d973fcbcc2f944752ff10e6a76b0b2d9329937a7
</pre>
@@ -431,7 +440,10 @@ Fixes following vulnerabilities:
CVE-2023-47342, 0077a817a1dd83790f674c3b5078b2dba106d228 /
e4d5ac8d7d2a08658b3db7dd821246fe6b35381f
CVE-2022-48434, 031c9601d06759a748adc077f73e3005b5571be1 /
d4b7b3c03ee2baf0166ce49dff17ec9beff684db
CVE-2022-3341, d811434b5d731c0fad2eb5fbf3fc3e53df98ae67 /
9cf652cef49d74afe3d454f27d49eb1a1394951e
+CVE-2024-36613, 42f495fbe1b32c316103f52732ce6726bc032227 /
50d8e4f27398fd5778485a827d7a2817921f8540
+CVE-2024-36616, 251b3c3892e79bd9dd93a973d16c28667fde131e /
86f73277bf014e2ce36dd2594f1e0fb8b3bd6661
CVE-2024-36617, 9557810a81624f222d603e0fdf3778054f8d8cc4 /
d973fcbcc2f944752ff10e6a76b0b2d9329937a7
+CVE-2024-35366, 21b8fbf060e5fef52c9d6380398487486eeca2ce /
0bed22d597b78999151e3bde0768b7fe763fc2a6
</pre>
<h3>4.3.6</h3>
-----------------------------------------------------------------------
Summary of changes:
src/security | 12 ++++++++++++
1 file changed, 12 insertions(+)
hooks/post-receive
--
_______________________________________________
ffmpeg-cvslog mailing list -- [email protected]
To unsubscribe send an email to [email protected]