summaryrefslogtreecommitdiff
path: root/meta/conf/bitbake.conf
diff options
context:
space:
mode:
authorRoy Li <rongqing.li@windriver.com>2014-11-18 21:02:11 -0600
committerRichard Purdie <richard.purdie@linuxfoundation.org>2014-12-31 10:16:58 +0000
commitfad70ea3495329a39329532f59de3b14c22c2d15 (patch)
tree2e7a53d678a379de3e46b20ae1f5042b0a210e6b /meta/conf/bitbake.conf
parentc376804d451a200bf697d3f34e68d58726f5233c (diff)
downloadopenembedded-core-fad70ea3495329a39329532f59de3b14c22c2d15.tar.gz
openembedded-core-fad70ea3495329a39329532f59de3b14c22c2d15.tar.bz2
openembedded-core-fad70ea3495329a39329532f59de3b14c22c2d15.zip
gst-ffmpeg: fixes for CVE-2014-8548 and CVE-2014-8541
Issue: LIN7-1755 Issue: LIN7-1739 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-8541 libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determining whether an image size has changed, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted MJPEG data. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-8548 Off-by-one error in libavcodec/smc.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted Quicktime Graphics (aka SMC) video data. (From OE-Core rev: 4bd50c5a967af2b8f0fe77b8f9c100169e4fc531) Signed-off-by: Roy Li <rongqing.li@windriver.com> Signed-off-by: Mark Hatle <mark.hatle@windriver.com> Signed-off-by: Ross Burton <ross.burton@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'meta/conf/bitbake.conf')
0 files changed, 0 insertions, 0 deletions