Revision Date: | 2020-12-02 | Version: | 1 |
Title: | Security update for ffmpeg (Moderate) |
Description: |
This update for ffmpeg fixes the following issues:
- CVE-2018-13300: An improper argument passed to the avpriv_request_sample function may have triggered an out-of-array read while converting a crafted AVI file to MPEG4, leading to a denial of service and possibly an information disclosure (bsc#1100348) - CVE-2018-15822: The flv_write_packet function did not check for an empty audio packet, leading to an assertion failure and DoS (bsc#1105869) - CVE-2018-13305: Due to a missing check for negative values of the mquant variable, the vc1_put_blocks_clamped function in libavcodec/vc1_block.c may trigger an out-of-array access while converting a crafted AVI file to MPEG4, leading to an information disclosure or a denial of service. (bsc#1100345). - CVE-2018-12458: An improper integer type in the mpeg4_encode_gop_header function in libavcodec/mpeg4videoenc.c might have triggered an assertion violation while converting a crafted AVI file to MPEG4, leading to a denial of service. (bsc#1097983).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1013721 1013732 1069904 1081516 1097983 1100345 1100348 1102604 1104662 1105869 1106415 1106420 1106996 1108086 1108395 1112142 1112143 1112144 1112146 1112147 1112148 1112152 1112153 1112182 1112294 1112578 1113064 1113245 1113700 1117058 1118952 1120307 1120381 1120813 1122895 1123304 1123642 1123823 1123828 1123832 1124365 1124366 1124367 1124368 1124628 1124667 1125665 1126325 1126768 1127458 1128649 1130129 1140709 1141063 1153095 1153245 1153433 1153451 1153459 CVE-2016-9800 CVE-2016-9801 CVE-2017-14804 CVE-2018-12458 CVE-2018-13300 CVE-2018-13305 CVE-2018-13785 CVE-2018-15822 CVE-2018-16412 CVE-2018-16435 CVE-2018-18544 CVE-2018-20467 CVE-2018-20748 CVE-2018-20749 CVE-2018-20750 CVE-2018-3136 CVE-2018-3139 CVE-2018-3149 CVE-2018-3169 CVE-2018-3180 CVE-2018-3183 CVE-2018-3214 CVE-2019-12838 CVE-2019-17041 CVE-2019-17042 CVE-2019-17362 CVE-2019-3825 CVE-2019-3840 CVE-2019-6438 CVE-2019-7175 CVE-2019-7395 CVE-2019-7396 CVE-2019-7397 CVE-2019-7398 CVE-2019-8375 SUSE-SU-2018:3609-1 SUSE-SU-2018:4189-1 SUSE-SU-2019:0058-1 SUSE-SU-2019:0283-1 SUSE-SU-2019:0387-1 SUSE-SU-2019:0527-1 SUSE-SU-2019:0739-1 SUSE-SU-2019:0890-1 SUSE-SU-2019:0936-1 SUSE-SU-2019:0960-1 SUSE-SU-2019:2808-1 SUSE-SU-2019:2937-1 SUSE-SU-2019:2989-1
|
Platform(s): | SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise for SAP 12 SUSE Linux Enterprise High Availability 12 SP2 SUSE Linux Enterprise High Availability 12 SP3 SUSE Linux Enterprise High Availability 12 SP4 SUSE Linux Enterprise High Availability 15 SUSE Linux Enterprise Module for additional PackageHub packages 15 SUSE Linux Enterprise Module for Containers 12 SUSE Linux Enterprise Module for Desktop Applications 15 SUSE Linux Enterprise Module for High Performance Computing 15 SUSE Linux Enterprise Module for High Performance Computing 15 SP1 SUSE Linux Enterprise Module for Legacy Software 12 SUSE Linux Enterprise Module for Legacy Software 15 SUSE Linux Enterprise Module for Legacy Software 15 SP1 SUSE Linux Enterprise Module for Live Patching 15 SUSE Linux Enterprise Module for Live Patching 15 SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 SUSE Linux Enterprise Module for Public Cloud 12 SUSE Linux Enterprise Module for Public Cloud 15 SUSE Linux Enterprise Module for Server Applications 15 SP1 SUSE Linux Enterprise Module for Web Scripting 12 SUSE Linux Enterprise Module for Web Scripting 15 SUSE Linux Enterprise Module for Web Scripting 15 SP1 SUSE Linux Enterprise Server 11 SUSE Linux Enterprise Server 11 SP1-CLIENT-TOOLS SUSE Linux Enterprise Server 11 SP1-LTSS SUSE Linux Enterprise Server 11 SP2 SUSE Linux Enterprise Server 11 SP2-LTSS SUSE Linux Enterprise Server 11 SP3 SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 11-SECURITY SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server for VMWare 11 SP2 SUSE Linux Enterprise Server for VMWare 11 SP3 SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 15 SUSE Package Hub for SUSE Linux Enterprise 12
| Product(s): | |
Definition Synopsis |
SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 is installed AND python-requests-2.3.0-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
accountsservice-0.6.35-1 is installed
OR accountsservice-lang-0.6.35-1 is installed
OR libaccountsservice0-0.6.35-1 is installed
OR typelib-1_0-AccountsService-1_0-0.6.35-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
MozillaFirefox-38.4.0esr-51 is installed
OR MozillaFirefox-translations-38.4.0esr-51 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
imap-2007e_suse-22 is installed
OR libc-client2007e_suse-2007e_suse-22 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
libprocps3-3.3.9-11.14 is installed
OR procps-3.3.9-11.14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise for SAP 12 is installed
AND clamsap-0.98.9-4.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP2 is installed
AND ctdb-4.4.2-29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP3 is installed
AND Package Information
libpacemaker3-1.1.16-4 is installed
OR pacemaker-1.1.16-4 is installed
OR pacemaker-cli-1.1.16-4 is installed
OR pacemaker-cts-1.1.16-4 is installed
OR pacemaker-remote-1.1.16-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP4 is installed
AND conntrack-tools-1.4.2-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 15 is installed
AND Package Information
cluster-md-kmp-default-4.12.14-25.22 is installed
OR dlm-kmp-default-4.12.14-25.22 is installed
OR gfs2-kmp-default-4.12.14-25.22 is installed
OR kernel-default-4.12.14-25.22 is installed
OR ocfs2-kmp-default-4.12.14-25.22 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
AND Package Information
ffmpeg-3.4.2-4.17 is installed
OR libavdevice57-3.4.2-4.17 is installed
OR libavfilter6-3.4.2-4.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Containers 12 is installed
AND docker-1.6.2-31 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 is installed
AND Package Information
ffmpeg-3.4.2-4.12 is installed
OR libavcodec57-3.4.2-4.12 is installed
OR libavutil-devel-3.4.2-4.12 is installed
OR libavutil55-3.4.2-4.12 is installed
OR libpostproc-devel-3.4.2-4.12 is installed
OR libpostproc54-3.4.2-4.12 is installed
OR libswresample-devel-3.4.2-4.12 is installed
OR libswresample2-3.4.2-4.12 is installed
OR libswscale-devel-3.4.2-4.12 is installed
OR libswscale4-3.4.2-4.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for High Performance Computing 15 is installed
AND Package Information
libpmi0-17.11.7-6.3 is installed
OR libslurm32-17.11.7-6.3 is installed
OR perl-slurm-17.11.7-6.3 is installed
OR slurm-17.11.7-6.3 is installed
OR slurm-auth-none-17.11.7-6.3 is installed
OR slurm-config-17.11.7-6.3 is installed
OR slurm-devel-17.11.7-6.3 is installed
OR slurm-doc-17.11.7-6.3 is installed
OR slurm-lua-17.11.7-6.3 is installed
OR slurm-munge-17.11.7-6.3 is installed
OR slurm-node-17.11.7-6.3 is installed
OR slurm-pam_slurm-17.11.7-6.3 is installed
OR slurm-plugins-17.11.7-6.3 is installed
OR slurm-slurmdbd-17.11.7-6.3 is installed
OR slurm-sql-17.11.7-6.3 is installed
OR slurm-torque-17.11.7-6.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for High Performance Computing 15 SP1 is installed
AND Package Information
libpmi0-18.08.8-3.4 is installed
OR libslurm33-18.08.8-3.4 is installed
OR perl-Switch-2.17-3.2 is installed
OR perl-slurm-18.08.8-3.4 is installed
OR slurm-18.08.8-3.4 is installed
OR slurm-auth-none-18.08.8-3.4 is installed
OR slurm-config-18.08.8-3.4 is installed
OR slurm-config-man-18.08.8-3.4 is installed
OR slurm-devel-18.08.8-3.4 is installed
OR slurm-doc-18.08.8-3.4 is installed
OR slurm-lua-18.08.8-3.4 is installed
OR slurm-munge-18.08.8-3.4 is installed
OR slurm-node-18.08.8-3.4 is installed
OR slurm-pam_slurm-18.08.8-3.4 is installed
OR slurm-plugins-18.08.8-3.4 is installed
OR slurm-slurmdbd-18.08.8-3.4 is installed
OR slurm-sql-18.08.8-3.4 is installed
OR slurm-sview-18.08.8-3.4 is installed
OR slurm-torque-18.08.8-3.4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 12 is installed
AND Package Information
cups154-1.5.4-2 is installed
OR cups154-client-1.5.4-2 is installed
OR cups154-filters-1.5.4-2 is installed
OR cups154-libs-1.5.4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 15 is installed
AND Package Information
kernel-default-4.12.14-25.6 is installed
OR reiserfs-kmp-default-4.12.14-25.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 15 SP1 is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr5.40-3.24 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr5.40-3.24 is installed
OR java-1_8_0-ibm-devel-1.8.0_sr5.40-3.24 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr5.40-3.24 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 is installed
AND Package Information
kernel-default-4.12.14-25.13 is installed
OR kernel-default-livepatch-4.12.14-25.13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
AND Package Information
kernel-default-4.12.14-197.7 is installed
OR kernel-default-livepatch-4.12.14-197.7 is installed
OR kernel-default-livepatch-devel-4.12.14-197.7 is installed
OR kernel-livepatch-4_12_14-197_7-default-1-3.3 is installed
OR kernel-livepatch-SLE15-SP1_Update_2-1-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
AND Package Information
libtomcrypt-1.17-3.3 is installed
OR libtomcrypt-devel-1.17-3.3 is installed
OR libtomcrypt-examples-1.17-3.3 is installed
OR libtomcrypt0-1.17-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
graphviz-addons-2.40.1-6.3 is installed
OR graphviz-doc-2.40.1-6.3 is installed
OR graphviz-gnome-2.40.1-6.3 is installed
OR graphviz-guile-2.40.1-6.3 is installed
OR graphviz-gvedit-2.40.1-6.3 is installed
OR graphviz-java-2.40.1-6.3 is installed
OR graphviz-lua-2.40.1-6.3 is installed
OR graphviz-php-2.40.1-6.3 is installed
OR graphviz-ruby-2.40.1-6.3 is installed
OR graphviz-smyrna-2.40.1-6.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
AND Package Information
MozillaFirefox-68.6.0-3.75 is installed
OR MozillaFirefox-branding-upstream-68.6.0-3.75 is installed
OR MozillaFirefox-buildsymbols-68.6.0-3.75 is installed
OR MozillaFirefox-devel-68.6.0-3.75 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 12 is installed
AND python-pycrypto-2.6.1-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 is installed
AND Package Information
kernel-azure-4.12.14-5.5 is installed
OR kernel-azure-base-4.12.14-5.5 is installed
OR kernel-azure-devel-4.12.14-5.5 is installed
OR kernel-devel-azure-4.12.14-5.5 is installed
OR kernel-source-azure-4.12.14-5.5 is installed
OR kernel-syms-azure-4.12.14-5.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
AND Package Information
dovecot23-2.3.3-8 is installed
OR dovecot23-backend-mysql-2.3.3-8 is installed
OR dovecot23-backend-pgsql-2.3.3-8 is installed
OR dovecot23-backend-sqlite-2.3.3-8 is installed
OR dovecot23-devel-2.3.3-8 is installed
OR dovecot23-fts-2.3.3-8 is installed
OR dovecot23-fts-lucene-2.3.3-8 is installed
OR dovecot23-fts-solr-2.3.3-8 is installed
OR dovecot23-fts-squat-2.3.3-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 12 is installed
AND Package Information
apache2-mod_php5-5.5.14-4 is installed
OR php5-5.5.14-4 is installed
OR php5-bcmath-5.5.14-4 is installed
OR php5-bz2-5.5.14-4 is installed
OR php5-calendar-5.5.14-4 is installed
OR php5-ctype-5.5.14-4 is installed
OR php5-curl-5.5.14-4 is installed
OR php5-dba-5.5.14-4 is installed
OR php5-dom-5.5.14-4 is installed
OR php5-enchant-5.5.14-4 is installed
OR php5-exif-5.5.14-4 is installed
OR php5-fastcgi-5.5.14-4 is installed
OR php5-fileinfo-5.5.14-4 is installed
OR php5-fpm-5.5.14-4 is installed
OR php5-ftp-5.5.14-4 is installed
OR php5-gd-5.5.14-4 is installed
OR php5-gettext-5.5.14-4 is installed
OR php5-gmp-5.5.14-4 is installed
OR php5-iconv-5.5.14-4 is installed
OR php5-intl-5.5.14-4 is installed
OR php5-json-5.5.14-4 is installed
OR php5-ldap-5.5.14-4 is installed
OR php5-mbstring-5.5.14-4 is installed
OR php5-mcrypt-5.5.14-4 is installed
OR php5-mysql-5.5.14-4 is installed
OR php5-odbc-5.5.14-4 is installed
OR php5-openssl-5.5.14-4 is installed
OR php5-pcntl-5.5.14-4 is installed
OR php5-pdo-5.5.14-4 is installed
OR php5-pear-5.5.14-4 is installed
OR php5-pgsql-5.5.14-4 is installed
OR php5-pspell-5.5.14-4 is installed
OR php5-shmop-5.5.14-4 is installed
OR php5-snmp-5.5.14-4 is installed
OR php5-soap-5.5.14-4 is installed
OR php5-sockets-5.5.14-4 is installed
OR php5-sqlite-5.5.14-4 is installed
OR php5-suhosin-5.5.14-4 is installed
OR php5-sysvmsg-5.5.14-4 is installed
OR php5-sysvsem-5.5.14-4 is installed
OR php5-sysvshm-5.5.14-4 is installed
OR php5-tokenizer-5.5.14-4 is installed
OR php5-wddx-5.5.14-4 is installed
OR php5-xmlreader-5.5.14-4 is installed
OR php5-xmlrpc-5.5.14-4 is installed
OR php5-xmlwriter-5.5.14-4 is installed
OR php5-xsl-5.5.14-4 is installed
OR php5-zip-5.5.14-4 is installed
OR php5-zlib-5.5.14-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 15 is installed
AND Package Information
apache2-mod_php7-7.2.5-4.40 is installed
OR php7-7.2.5-4.40 is installed
OR php7-bcmath-7.2.5-4.40 is installed
OR php7-bz2-7.2.5-4.40 is installed
OR php7-calendar-7.2.5-4.40 is installed
OR php7-ctype-7.2.5-4.40 is installed
OR php7-curl-7.2.5-4.40 is installed
OR php7-dba-7.2.5-4.40 is installed
OR php7-devel-7.2.5-4.40 is installed
OR php7-dom-7.2.5-4.40 is installed
OR php7-enchant-7.2.5-4.40 is installed
OR php7-exif-7.2.5-4.40 is installed
OR php7-fastcgi-7.2.5-4.40 is installed
OR php7-fileinfo-7.2.5-4.40 is installed
OR php7-fpm-7.2.5-4.40 is installed
OR php7-ftp-7.2.5-4.40 is installed
OR php7-gd-7.2.5-4.40 is installed
OR php7-gettext-7.2.5-4.40 is installed
OR php7-gmp-7.2.5-4.40 is installed
OR php7-iconv-7.2.5-4.40 is installed
OR php7-intl-7.2.5-4.40 is installed
OR php7-json-7.2.5-4.40 is installed
OR php7-ldap-7.2.5-4.40 is installed
OR php7-mbstring-7.2.5-4.40 is installed
OR php7-mysql-7.2.5-4.40 is installed
OR php7-odbc-7.2.5-4.40 is installed
OR php7-opcache-7.2.5-4.40 is installed
OR php7-openssl-7.2.5-4.40 is installed
OR php7-pcntl-7.2.5-4.40 is installed
OR php7-pdo-7.2.5-4.40 is installed
OR php7-pear-7.2.5-4.40 is installed
OR php7-pear-Archive_Tar-7.2.5-4.40 is installed
OR php7-pgsql-7.2.5-4.40 is installed
OR php7-phar-7.2.5-4.40 is installed
OR php7-posix-7.2.5-4.40 is installed
OR php7-shmop-7.2.5-4.40 is installed
OR php7-snmp-7.2.5-4.40 is installed
OR php7-soap-7.2.5-4.40 is installed
OR php7-sockets-7.2.5-4.40 is installed
OR php7-sodium-7.2.5-4.40 is installed
OR php7-sqlite-7.2.5-4.40 is installed
OR php7-sysvmsg-7.2.5-4.40 is installed
OR php7-sysvsem-7.2.5-4.40 is installed
OR php7-sysvshm-7.2.5-4.40 is installed
OR php7-tokenizer-7.2.5-4.40 is installed
OR php7-wddx-7.2.5-4.40 is installed
OR php7-xmlreader-7.2.5-4.40 is installed
OR php7-xmlrpc-7.2.5-4.40 is installed
OR php7-xmlwriter-7.2.5-4.40 is installed
OR php7-xsl-7.2.5-4.40 is installed
OR php7-zip-7.2.5-4.40 is installed
OR php7-zlib-7.2.5-4.40 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
AND Package Information
nodejs8-8.16.1-3.20 is installed
OR nodejs8-devel-8.16.1-3.20 is installed
OR nodejs8-docs-8.16.1-3.20 is installed
OR npm8-8.16.1-3.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND apache2-mod_nss-1.0.8-9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
alsa-1.0.27.2-11 is installed
OR alsa-docs-1.0.27.2-11 is installed
OR libasound2-1.0.27.2-11 is installed
OR libasound2-32bit-1.0.27.2-11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND libjansson4-2.7-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND autofs-5.0.9-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 is installed
AND bind-devel-9.9.5P1-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
AND Package Information
avahi-compat-howl-devel-0.6.32-30.36 is installed
OR avahi-compat-mDNSResponder-devel-0.6.32-30.36 is installed
OR libavahi-devel-0.6.32-30.36 is installed
OR libhowl0-0.6.32-30.36 is installed
OR python-avahi-0.6.32-30.36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND Package Information
libsilc-1_1-2-1.1.10-24.128 is installed
OR libsilcclient-1_1-3-1.1.10-24.128 is installed
OR silc-toolkit-1.1.10-24.128 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
kernel-default-4.12.14-25.19 is installed
OR kernel-default-extra-4.12.14-25.19 is installed
|
Definition Synopsis |
SUSE Package Hub for SUSE Linux Enterprise 12 is installed
AND Package Information
chromedriver-54.0.2840.59-109 is installed
OR chromium-54.0.2840.59-109 is installed
OR chromium-ffmpegsumo-54.0.2840.59-109 is installed
|