]> code.ossystems Code Review - openembedded-core.git/commit
ffmpeg: fix CVE-2020-22015
authorTony Tascioglu <tony.tascioglu@windriver.com>
Tue, 27 Jul 2021 23:20:44 +0000 (16:20 -0700)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 28 Jul 2021 22:46:56 +0000 (23:46 +0100)
commit5953c24ecd2e540483443284111abc883fdb1a10
tree785c7cae2f53af482a438862dd45a048584700af
parent66478fa2b913f69bcad1a1989f716c9c30953fee
ffmpeg: fix CVE-2020-22015

avformat/movenc: Check pal_size before use

Fixes: assertion failure
Fixes: out of array read
Fixes: Ticket8190
Fixes: CVE-2020-22015
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
CVE: CVE-2020-22015
Upstream-Status: Backport [4c1afa292520329eecd1cc7631bc59a8cca95c46]

Signed-off-by: Tony Tascioglu <tony.tascioglu@windriver.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-multimedia/ffmpeg/ffmpeg/fix-CVE-2020-22015.patch [new file with mode: 0644]
meta/recipes-multimedia/ffmpeg/ffmpeg_4.4.bb