]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
ffmpeg: fix CVE-2024-36619
authorArchana Polampalli <archana.polampalli@windriver.com>
Fri, 7 Feb 2025 15:41:11 +0000 (15:41 +0000)
committerSteve Sakoman <steve@sakoman.com>
Mon, 10 Feb 2025 14:44:53 +0000 (06:44 -0800)
commit161711ba2ef14fa77fba4740b1933c68043c57c7
tree6585f13b628ed0aca72b31575c03a5d6a154d52c
parent21230d5dfe908533958712e06316a253e16b9d2e
ffmpeg: fix CVE-2024-36619

FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec
library which allows for an integer overflow when handling certain block types,
leading to a denial-of-service (DoS) condition.

Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2024-36619.patch [new file with mode: 0644]
meta/recipes-multimedia/ffmpeg/ffmpeg_6.1.1.bb