]> code.ossystems Code Review - openembedded-core.git/commit
ffmpeg: fix CVE-2020-22033 and CVE-2020-22019
authorTony Tascioglu <tony.tascioglu@windriver.com>
Tue, 27 Jul 2021 23:20:46 +0000 (16:20 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 28 Jul 2021 22:46:56 +0000 (23:46 +0100)
commit451a945efb21221cfeeb4e641c5aa8bf4ae18c89
tree3938751e7d3a9b3433469d3d178f4fa99ef407dc
parentb30f647225ecc71207696df3951716e85b886ca4
ffmpeg: fix CVE-2020-22033 and CVE-2020-22019

avfilter/vf_vmafmotion: Check dimensions

Fixes: out of array access
Fixes: Ticket8241
Fixes: Ticket8246
Fixes: CVE-2020-22019
Fixes: CVE-2020-22033
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
CVE: CVE-2020-22033
CVE: CVE-2020-22019
Upstream-Status: Backport [82ad1b76751bcfad5005440db48c46a4de5d6f02]

Signed-off-by: Tony Tascioglu <tony.tascioglu@windriver.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-multimedia/ffmpeg/ffmpeg/fix-CVE-2020-22033-CVE-2020-22019.patch [new file with mode: 0644]
meta/recipes-multimedia/ffmpeg/ffmpeg_4.4.bb