Oval Definition:oval:org.opensuse.security:def:51254
Revision Date:2020-12-01Version:1
Title:Security update for ffmpeg (Important)
Description:

This update for ffmpeg fixes the following issues:

Security issues fixed: - CVE-2019-17542: Fixed a heap-buffer overflow in vqa_decode_chunk due to an out-of-array access (bsc#1154064). - CVE-2019-12730: Fixed an uninitialized use of variables due to an improper check (bsc#1137526). - CVE-2019-9718: Fixed a denial of service in the subtitle decode (bsc#1129715). - CVE-2018-13301: Fixed a denial of service while converting a crafted AVI file to MPEG4 (bsc#1100352).
Family:unixClass:patch
Status:Reference(s):1012382
1050242
1050549
1051510
1052904
1053043
1055117
1055121
1055186
1056787
1058115
1061840
1063638
1064802
1065600
1065729
1066129
1068546
1070872
1071995
1075020
1082387
1082555
1083647
1085535
1085536
1086657
1088804
1093389
1097583
1097584
1097585
1097586
1097587
1097588
1099658
1100352
1103186
1103259
1103992
1104353
1104427
1104967
1106011
1106284
1107832
1108193
1108838
1108937
1110233
1110946
1111331
1111666
1111696
1112063
1112128
1112178
1113722
1113956
1114279
1114427
1114542
1114638
1115688
1117114
1117158
1117561
1118139
1119680
1119843
1120091
1120318
1120423
1120566
1120843
1120902
1122767
1122776
1123454
1123663
1124503
1124839
1126206
1126356
1126704
1127175
1127371
1127374
1127532
1127616
1128052
1128415
1128544
1128904
1128971
1128979
1129138
1129273
1129497
1129693
1129715
1129770
1129845
1130195
1130425
1130527
1130567
1130579
1130699
1130937
1130972
1131326
1131427
1131438
1131451
1131467
1131488
1131530
1131565
1131574
1131587
1131659
1131673
1131847
1131848
1131851
1131900
1131934
1131935
1132044
1132091
1132219
1132226
1132227
1132365
1132368
1132369
1132370
1132372
1132373
1132384
1132397
1132402
1132403
1132404
1132405
1132407
1132411
1132412
1132413
1132414
1132426
1132527
1132531
1132555
1132558
1132561
1132562
1132563
1132564
1132570
1132571
1132572
1132589
1132618
1132673
1132681
1132726
1132828
1132894
1132943
1132982
1133005
1133016
1133094
1133095
1133115
1133149
1133176
1133188
1133190
1133320
1133486
1133529
1133547
1133584
1133593
1133612
1133616
1133667
1133668
1133672
1133674
1133675
1133698
1133702
1133731
1133769
1133772
1133774
1133778
1133779
1133780
1133825
1133850
1133851
1133852
1133897
1134090
1134160
1134162
1134199
1134200
1134201
1134202
1134203
1134204
1134205
1134223
1134354
1134393
1134397
1134459
1134460
1134461
1134597
1134600
1134607
1134618
1134651
1134671
1134760
1134806
1134810
1134813
1134848
1134936
1134945
1134946
1134947
1134948
1134949
1134950
1134951
1134952
1134953
1134972
1134974
1134975
1134980
1134981
1134983
1134987
1134989
1134990
1134994
1134995
1134998
1134999
1135006
1135007
1135008
1135018
1135021
1135024
1135026
1135027
1135028
1135029
1135031
1135033
1135034
1135035
1135036
1135037
1135038
1135039
1135041
1135042
1135044
1135045
1135046
1135047
1135049
1135051
1135052
1135053
1135055
1135056
1135058
1135100
1135120
1135278
1135281
1135309
1135312
1135314
1135315
1135316
1135320
1135323
1135330
1135492
1135542
1135556
1135603
1135642
1135661
1135758
1136188
1136206
1136215
1136345
1136347
1136348
1136353
1136424
1136428
1136430
1136432
1136434
1136435
1136438
1136439
1136446
1136456
1136460
1136461
1136469
1136477
1136478
1136498
1136573
1136586
1136881
1136935
1136990
1137151
1137152
1137153
1137162
1137201
1137224
1137232
1137233
1137236
1137372
1137429
1137444
1137526
1137586
1137597
1137739
1137752
1138291
1138293
1140747
1152107
1154064
1154460
1154464
1157888
1158003
1158004
1158005
1158006
1158007
1158755
1160305
1160467
1160468
1160498
1162002
1170011
1171078
1171252
1171254
1171673
1171701
1171732
1171868
1172257
1172775
1172781
1172782
1172783
1172999
1173265
1173280
1173514
1173567
1173573
1173659
1173999
1174000
1174115
1174462
1174543
1174955
1177155
CVE-2009-3297
CVE-2011-0541
CVE-2011-1000
CVE-2011-2483
CVE-2013-1431
CVE-2014-3618
CVE-2017-5753
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-13301
CVE-2018-14633
CVE-2018-16880
CVE-2018-17182
CVE-2018-7191
CVE-2019-10124
CVE-2019-11023
CVE-2019-11085
CVE-2019-11091
CVE-2019-11477
CVE-2019-11478
CVE-2019-11479
CVE-2019-11486
CVE-2019-11487
CVE-2019-11811
CVE-2019-11815
CVE-2019-11833
CVE-2019-11884
CVE-2019-12382
CVE-2019-12730
CVE-2019-12818
CVE-2019-12819
CVE-2019-14896
CVE-2019-14897
CVE-2019-16746
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-17542
CVE-2019-18422
CVE-2019-18423
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19582
CVE-2019-19583
CVE-2019-20908
CVE-2019-3846
CVE-2019-3882
CVE-2019-5489
CVE-2019-5737
CVE-2019-8564
CVE-2019-9003
CVE-2019-9500
CVE-2019-9503
CVE-2019-9718
CVE-2020-0305
CVE-2020-10766
CVE-2020-10767
CVE-2020-10768
CVE-2020-10769
CVE-2020-10773
CVE-2020-12653
CVE-2020-12654
CVE-2020-12771
CVE-2020-12888
CVE-2020-13974
CVE-2020-14416
CVE-2020-15393
CVE-2020-15708
CVE-2020-15780
CVE-2020-25637
SUSE-SU-2019:0635-1
SUSE-SU-2019:1267-1
SUSE-SU-2019:3184-1
SUSE-SU-2019:3309-1
SUSE-SU-2020:0078-1
SUSE-SU-2020:0204-1
SUSE-SU-2020:2969-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Legacy Software 15 SP1
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Web Scripting 15
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • freetype2-2.3.7-25.32 is installed
  • OR freetype2-32bit-2.3.7-25.32 is installed
  • OR freetype2-devel-2.3.7-25.32 is installed
  • OR ft2demos-2.3.7-25.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • finch-2.6.6-0.23 is installed
  • OR libpurple-2.6.6-0.23 is installed
  • OR libpurple-lang-2.6.6-0.23 is installed
  • OR libpurple-meanwhile-2.6.6-0.23 is installed
  • OR libpurple-tcl-2.6.6-0.23 is installed
  • OR pidgin-2.6.6-0.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • fuse-2.9.3-3 is installed
  • OR libfuse2-2.9.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • liblua5_2-5.2.2-4 is installed
  • OR lua-5.2.2-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • cpp48-4.8.5-30 is installed
  • OR gcc48-4.8.5-30 is installed
  • OR gcc48-32bit-4.8.5-30 is installed
  • OR gcc48-c++-4.8.5-30 is installed
  • OR gcc48-gij-4.8.5-30 is installed
  • OR gcc48-gij-32bit-4.8.5-30 is installed
  • OR gcc48-info-4.8.5-30 is installed
  • OR libasan0-4.8.5-30 is installed
  • OR libasan0-32bit-4.8.5-30 is installed
  • OR libgcj48-4.8.5-30 is installed
  • OR libgcj48-32bit-4.8.5-30 is installed
  • OR libgcj48-jar-4.8.5-30 is installed
  • OR libgcj_bc1-4.8.5-30 is installed
  • OR libstdc++48-devel-4.8.5-30 is installed
  • OR libstdc++48-devel-32bit-4.8.5-30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • krb5-1.12.5-39 is installed
  • OR krb5-32bit-1.12.5-39 is installed
  • OR krb5-client-1.12.5-39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-71.85 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-71.85 is installed
  • OR libMagickCore-6_Q16-1-6.8.8.1-71.85 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-71.85 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-71.85 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND Package Information
  • graphviz-addons-2.40.1-6.3 is installed
  • OR graphviz-gnome-2.40.1-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.27 is installed
  • OR libavcodec57-3.4.2-4.27 is installed
  • OR libavutil-devel-3.4.2-4.27 is installed
  • OR libavutil55-3.4.2-4.27 is installed
  • OR libpostproc-devel-3.4.2-4.27 is installed
  • OR libpostproc54-3.4.2-4.27 is installed
  • OR libswresample-devel-3.4.2-4.27 is installed
  • OR libswresample2-3.4.2-4.27 is installed
  • OR libswscale-devel-3.4.2-4.27 is installed
  • OR libswscale4-3.4.2-4.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.4 is installed
  • OR reiserfs-kmp-default-4.12.14-197.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-25_19-default-2-2 is installed
  • OR kernel-livepatch-SLE15_Update_5-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_15-default-7-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_4-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • xen-4.10.4_08-3.28 is installed
  • OR xen-devel-4.10.4_08-3.28 is installed
  • OR xen-tools-4.10.4_08-3.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 is installed
  • AND Package Information
  • nodejs8-8.15.1-3.14 is installed
  • OR nodejs8-devel-8.15.1-3.14 is installed
  • OR nodejs8-docs-8.15.1-3.14 is installed
  • OR npm8-8.15.1-3.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • gvim-7.4.326-2 is installed
  • OR vim-7.4.326-2 is installed
  • OR vim-data-7.4.326-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_32-default-7-4 is installed
  • OR kgraft-patch-3_12_69-60_64_32-xen-7-4 is installed
  • OR kgraft-patch-SLE12-SP1_Update_13-7-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND ft2demos-2.6.3-7.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND clamav-0.100.1-33.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • curl-7.37.0-37.40 is installed
  • OR libcurl4-7.37.0-37.40 is installed
  • OR libcurl4-32bit-7.37.0-37.40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_74-92_32-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_11-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND apache2-mod_nss-1.0.14-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.24.4-2.47 is installed
  • OR libwebkit2gtk-4_0-37-2.24.4-2.47 is installed
  • OR libwebkit2gtk3-lang-2.24.4-2.47 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.24.4-2.47 is installed
  • OR typelib-1_0-WebKit2-4_0-2.24.4-2.47 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.24.4-2.47 is installed
  • OR webkit2gtk3-2.24.4-2.47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • perl-5.18.2-12.20 is installed
  • OR perl-32bit-5.18.2-12.20 is installed
  • OR perl-base-5.18.2-12.20 is installed
  • OR perl-doc-5.18.2-12.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libsoup-2.62.2-5.7 is installed
  • OR libsoup-2_4-1-2.62.2-5.7 is installed
  • OR libsoup-2_4-1-32bit-2.62.2-5.7 is installed
  • OR libsoup-lang-2.62.2-5.7 is installed
  • OR typelib-1_0-Soup-2_4-2.62.2-5.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • freeradius-server-3.0.15-2.8 is installed
  • OR freeradius-server-doc-3.0.15-2.8 is installed
  • OR freeradius-server-krb5-3.0.15-2.8 is installed
  • OR freeradius-server-ldap-3.0.15-2.8 is installed
  • OR freeradius-server-libs-3.0.15-2.8 is installed
  • OR freeradius-server-mysql-3.0.15-2.8 is installed
  • OR freeradius-server-perl-3.0.15-2.8 is installed
  • OR freeradius-server-postgresql-3.0.15-2.8 is installed
  • OR freeradius-server-python-3.0.15-2.8 is installed
  • OR freeradius-server-sqlite-3.0.15-2.8 is installed
  • OR freeradius-server-utils-3.0.15-2.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • kernel-default-4.12.14-150.55 is installed
  • OR kernel-default-base-4.12.14-150.55 is installed
  • OR kernel-default-devel-4.12.14-150.55 is installed
  • OR kernel-default-man-4.12.14-150.55 is installed
  • OR kernel-devel-4.12.14-150.55 is installed
  • OR kernel-docs-4.12.14-150.55 is installed
  • OR kernel-macros-4.12.14-150.55 is installed
  • OR kernel-obs-build-4.12.14-150.55 is installed
  • OR kernel-source-4.12.14-150.55 is installed
  • OR kernel-syms-4.12.14-150.55 is installed
  • OR kernel-vanilla-4.12.14-150.55 is installed
  • OR kernel-vanilla-base-4.12.14-150.55 is installed
  • OR kernel-zfcpdump-4.12.14-150.55 is installed
  • OR reiserfs-kmp-default-4.12.14-150.55 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • libvirt-4.0.0-9.35 is installed
  • OR libvirt-admin-4.0.0-9.35 is installed
  • OR libvirt-client-4.0.0-9.35 is installed
  • OR libvirt-daemon-4.0.0-9.35 is installed
  • OR libvirt-daemon-config-network-4.0.0-9.35 is installed
  • OR libvirt-daemon-config-nwfilter-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-interface-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-libxl-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-lxc-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-network-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-nodedev-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-nwfilter-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-qemu-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-secret-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-core-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-disk-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-iscsi-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-logical-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-mpath-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-rbd-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-scsi-4.0.0-9.35 is installed
  • OR libvirt-daemon-hooks-4.0.0-9.35 is installed
  • OR libvirt-daemon-lxc-4.0.0-9.35 is installed
  • OR libvirt-daemon-qemu-4.0.0-9.35 is installed
  • OR libvirt-daemon-xen-4.0.0-9.35 is installed
  • OR libvirt-devel-4.0.0-9.35 is installed
  • OR libvirt-doc-4.0.0-9.35 is installed
  • OR libvirt-libs-4.0.0-9.35 is installed
  • OR libvirt-lock-sanlock-4.0.0-9.35 is installed
  • OR libvirt-nss-4.0.0-9.35 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND ucode-intel-20190618-13.47 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.50-38.41 is installed
  • BACK