~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to active/CVE-2016-2328

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2016-2328
2
 
PublicDate: 2016-02-12
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2328
5
 
Description:
6
 
 libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate
7
 
 certain height values, which allows remote attackers to cause a denial of
8
 
 service (out-of-bounds array read access) or possibly have unspecified
9
 
 other impact via a crafted .cine file, related to the
10
 
 bayer_to_rgb24_wrapper and bayer_to_yv12_wrapper functions.
11
 
Ubuntu-Description:
12
 
Notes:
13
 
Bugs:
14
 
Priority: medium
15
 
Discovered-by: Mateusz Jurczyk and Gynvael Coldwind
16
 
Assigned-to:
17
 
 
18
 
Patches_libav:
19
 
upstream_libav: needs-triage
20
 
precise_libav: not-affected (code not present)
21
 
precise/esm_libav: DNE (precise was not-affected [code not present])
22
 
trusty_libav: needs-triage
23
 
vivid/stable-phone-overlay_libav: DNE
24
 
vivid/ubuntu-core_libav: DNE
25
 
wily_libav: DNE
26
 
xenial_libav: DNE
27
 
yakkety_libav: DNE
28
 
zesty_libav: DNE
29
 
artful_libav: DNE
30
 
bionic_libav: DNE
31
 
devel_libav: DNE
32
 
 
33
 
Patches_ffmpeg:
34
 
 upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=ad3b6fa7d83db7de951ed891649af93a47e74be5
35
 
 upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=757248ea3cd917a7755cb15f817a9b1f15578718
36
 
upstream_ffmpeg: needs-triage
37
 
precise_ffmpeg: DNE
38
 
precise/esm_ffmpeg: DNE
39
 
trusty_ffmpeg: DNE
40
 
vivid/stable-phone-overlay_ffmpeg: DNE
41
 
vivid/ubuntu-core_ffmpeg: DNE
42
 
wily_ffmpeg: ignored (reached end-of-life)
43
 
xenial_ffmpeg: released (7:2.8.6-1ubuntu1)
44
 
yakkety_ffmpeg: released (7:2.8.6-1ubuntu1)
45
 
zesty_ffmpeg: released (7:2.8.6-1ubuntu1)
46
 
artful_ffmpeg: released (7:2.8.6-1ubuntu1)
47
 
bionic_ffmpeg: released (7:2.8.6-1ubuntu1)
48
 
devel_ffmpeg: released (7:2.8.6-1ubuntu1)