From baf5b4d95469634449521f7aa2b6937ad73458dc9e02f8350a818e586f36a5ed Mon Sep 17 00:00:00 2001 From: ZhaoQiang Date: Tue, 17 Sep 2024 19:42:03 +0800 Subject: [PATCH] Add use 64bit for input size check log entry for n7.0.2's update, to record security fix position. (CVE-2024-7055, bsc#1229026) --- ffmpeg-7.changes | 1 + 1 file changed, 1 insertion(+) diff --git a/ffmpeg-7.changes b/ffmpeg-7.changes index 2284455..035132f 100644 --- a/ffmpeg-7.changes +++ b/ffmpeg-7.changes @@ -29,6 +29,7 @@ Wed Aug 7 07:37:24 UTC 2024 - Cliff Zhao * avcodec/hevcdec: fix segfault on invalid film grain metadata (CVE-2024-32228, bsc#1227277) * avfilter/vf_tiltandshift: fix buffer offset for yuv422p input (CVE-2024-32229, bsc#1227295) * avcodec/mpegvideo_enc: Fix 1 line and one column images (CVE-2024-32230, bsc#1227296) + * avcodec/pnmdec: Use 64bit for input size check (CVE-2024-7055, bsc#1229026) - Drop ffmpeg-7-CVE-2024-32228.patch: The fix has been merged. - Drop ffmpeg-7-CVE-2024-32229.patch: