~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2011-3936

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2012-05-13
2
 
Candidate: CVE-2011-3936
3
 
PublicDate: 2012-08-20
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3936
6
 
 https://usn.ubuntu.com/usn/usn-1479-1
7
 
 https://usn.ubuntu.com/usn/usn-1478-1
8
 
Description:
9
 
 The dv_extract_audio function in libavcodec in FFmpeg 0.7.x before 0.7.12
10
 
 and 0.8.x before 0.8.11 and in Libav 0.5.x before 0.5.9, 0.6.x before
11
 
 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1 allows remote attackers
12
 
 to cause a denial of service (out-of-bounds read and application crash) via
13
 
 a crafted DV file.
14
 
Ubuntu-Description:
15
 
Notes:
16
 
 mdeslaur> ffmpeg-extra in multiverse needs to have matching version
17
 
 mdeslaur> libav-extra is built with tarball produced by libav package
18
 
 mdeslaur> see patches for CVE-2011-3929
19
 
Bugs:
20
 
Priority: medium
21
 
Discovered-by: Mateusz Jurczyk and Gynvael Coldwind
22
 
Assigned-to:
23
 
 
24
 
Patches_ffmpeg:
25
 
upstream_ffmpeg: released (0.5.9)
26
 
hardy_ffmpeg: ignored (reached end-of-life)
27
 
lucid_ffmpeg: released (4:0.5.9-0ubuntu0.10.04.1)
28
 
natty_ffmpeg: DNE
29
 
oneiric_ffmpeg: DNE
30
 
precise_ffmpeg: DNE
31
 
devel_ffmpeg: DNE
32
 
 
33
 
Patches_ffmpeg-extra:
34
 
upstream_ffmpeg-extra: needs-triage
35
 
hardy_ffmpeg-extra: DNE
36
 
lucid_ffmpeg-extra: released
37
 
natty_ffmpeg-extra: DNE
38
 
oneiric_ffmpeg-extra: DNE
39
 
precise_ffmpeg-extra: DNE
40
 
devel_ffmpeg-extra: DNE
41
 
 
42
 
Patches_libav:
43
 
upstream_libav: released (0.6.6,0.7.5,0.8.1)
44
 
hardy_libav: DNE
45
 
lucid_libav: DNE
46
 
natty_libav: released (4:0.6.6-0ubuntu0.11.04.1)
47
 
oneiric_libav: released (4:0.7.6-0ubuntu0.11.10.1)
48
 
precise_libav: not-affected (4:0.8.1-0ubuntu1)
49
 
devel_libav: not-affected (4:0.8.1-0ubuntu2)
50
 
 
51
 
Patches_libav-extra:
52
 
upstream_libav-extra: needs-triage
53
 
hardy_libav-extra: DNE
54
 
lucid_libav-extra: DNE
55
 
natty_libav-extra: released
56
 
oneiric_libav-extra: released
57
 
precise_libav-extra: not-affected (4:0.8.1ubuntu1)
58
 
devel_libav-extra: not-affected (4:0.8.1ubuntu1)
59