]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
gstreamer1.0: set status of CVE-2025-3887 to patched
authorPeter Marko <peter.marko@siemens.com>
Thu, 25 Sep 2025 14:05:07 +0000 (16:05 +0200)
committerSteve Sakoman <steve@sakoman.com>
Thu, 25 Sep 2025 14:56:16 +0000 (07:56 -0700)
commit13d7e30b45e90187800ba5a383c9579ba2fa0344
tree80deeae3680bbfbcab5d5fe66e24c5963328f99f
parent99ee1df6bde2ffd4fa2ddea44c0a9b94d9d77bae
gstreamer1.0: set status of CVE-2025-3887 to patched

This CVE was fixed in plugins-bad.
See [1] and [2] which is included in 1.24.13.
These commits are backport of [3] to 1.24.
Commits fixing this CVE were copied from [4].

[1] https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/e4351ef03f1331410b0c1216a6178d885f37e495
[2] https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/ed4c2ce380f7168bd4a3423f4398eb341cb931c7
[3] https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8884
[4] https://security-tracker.debian.org/tracker/CVE-2025-3887

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-multimedia/gstreamer/gstreamer1.0_1.24.13.bb