]> code.ossystems Code Review - openembedded-core.git/commit
ffmpeg: fix CVE-2020-22015
authorTony Tascioglu <tony.tascioglu@windriver.com>
Fri, 20 Aug 2021 21:31:55 +0000 (14:31 -0700)
committerAnuj Mittal <anuj.mittal@intel.com>
Mon, 23 Aug 2021 01:33:55 +0000 (09:33 +0800)
commitc10b49e2e8de02c1c6e6a57eab526ac9ebec066f
tree2bfdf348a0984c42c0b2a3b24cfacf096f8ce397
parent5e460d2c5d9d4d62cb3fcf090040f4bd1fe30e1f
ffmpeg: fix CVE-2020-22015

avformat/movenc: Check pal_size before use

Fixes: assertion failure
Fixes: out of array read
Fixes: Ticket8190
Fixes: CVE-2020-22015
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
CVE: CVE-2020-22015
Upstream-Status: Backport [4c1afa292520329eecd1cc7631bc59a8cca95c46]

Signed-off-by: Tony Tascioglu <tony.tascioglu@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-multimedia/ffmpeg/ffmpeg/fix-CVE-2020-22015.patch [new file with mode: 0644]
meta/recipes-multimedia/ffmpeg/ffmpeg_4.3.2.bb