Oval Definition:oval:org.opensuse.security:def:53752
Revision Date:2020-12-01Version:1
Title:Security update for ffmpeg (Moderate)
Description:

This update for ffmpeg fixes the following issues:

Security issues fixed:

* - CVE-2018-13302: Fixed out of array access issue (bsc#1100356). - CVE-2018-1999010: Fixed multiple out of array access vulnerabilities in the mms protocol that could result in accessing out of bound data via specially crafted input files (bnc#1102899) - CVE-2018-1999011: Fixed a heap buffer overflow in asf_o format demuxer that could result in remote code execution (bnc#1102689) - CVE-2018-1999012: Fixed an infinite loop vulnerability in pva format demuxer that could result in excessive amount of ressource allocation like CPU an RAM (CVE-2018-1999012 bnc#1102688). - CVE-2018-1999013: Fixed an use-after-free vulnerability in the realmedia demuxer that could allow remote attackers to read heap memory (bnc#1102687)
Family:unixClass:patch
Status:Reference(s):1002981
1010735
1010740
1010752
1010754
1010911
1021739
1023078
1023079
1025913
1026507
1027692
1027998
1033936
1033937
1033938
1033939
1033940
1033941
1033942
1033943
1033944
1033945
1045693
1049505
1051017
1051510
1053600
1056126
1056127
1056128
1056129
1056131
1056132
1056136
1071995
1094555
1100356
1102687
1102688
1102689
1102899
1108020
1111666
1112374
1114279
1128432
1134730
1134738
1135153
1135296
1135642
1136156
1136157
1136271
1136333
1137103
1137194
1137366
1137884
1137985
1138263
1138336
1138374
1138375
1138589
1138681
1138719
1138732
729190
900418
921842
922705
922706
922709
923758
932483
945484
945493
947458
948902
949889
953339
953362
953518
954872
957986
958848
960414
961368
961600
962313
963161
964427
965576
970632
973188
973631
974038
975130
975138
975865
975907
976058
976111
978164
978295
978413
979620
979670
980716
980724
981264
981276
982024
982025
982026
982224
982225
982286
982695
982960
983973
983984
984981
985503
986586
988675
988676
989121
989122
990843
990856
990923
998761
998762
998763
998800
998963
998964
CVE-2010-2640
CVE-2010-2641
CVE-2010-2642
CVE-2010-2643
CVE-2010-4341
CVE-2011-1758
CVE-2012-2396
CVE-2013-0219
CVE-2013-0220
CVE-2013-0287
CVE-2013-1986
CVE-2014-3672
CVE-2015-2751
CVE-2015-2752
CVE-2015-2756
CVE-2015-8325
CVE-2015-8946
CVE-2016-1908
CVE-2016-3115
CVE-2016-3158
CVE-2016-3159
CVE-2016-3710
CVE-2016-3960
CVE-2016-4001
CVE-2016-4002
CVE-2016-4020
CVE-2016-4037
CVE-2016-4439
CVE-2016-4441
CVE-2016-4453
CVE-2016-4454
CVE-2016-4952
CVE-2016-4962
CVE-2016-4963
CVE-2016-5105
CVE-2016-5106
CVE-2016-5107
CVE-2016-5126
CVE-2016-5238
CVE-2016-5337
CVE-2016-5338
CVE-2016-5403
CVE-2016-6224
CVE-2016-6258
CVE-2016-6259
CVE-2016-6351
CVE-2016-6354
CVE-2016-7175
CVE-2016-7176
CVE-2016-7177
CVE-2016-7178
CVE-2016-7179
CVE-2016-7180
CVE-2016-7947
CVE-2016-7948
CVE-2016-9373
CVE-2016-9374
CVE-2016-9375
CVE-2016-9376
CVE-2016-9577
CVE-2016-9578
CVE-2017-1000083
CVE-2017-12173
CVE-2017-13728
CVE-2017-13729
CVE-2017-13730
CVE-2017-13731
CVE-2017-13732
CVE-2017-13733
CVE-2017-13734
CVE-2017-15108
CVE-2017-5596
CVE-2017-5597
CVE-2017-6014
CVE-2017-7700
CVE-2017-7701
CVE-2017-7702
CVE-2017-7703
CVE-2017-7704
CVE-2017-7705
CVE-2017-7745
CVE-2017-7746
CVE-2017-7747
CVE-2017-7748
CVE-2018-10933
CVE-2018-13302
CVE-2018-16871
CVE-2018-1999010
CVE-2018-1999011
CVE-2018-1999012
CVE-2018-1999013
CVE-2019-12614
CVE-2019-12817
SUSE-SU-2015:0701-1
SUSE-SU-2016:1386-1
SUSE-SU-2016:2093-1
SUSE-SU-2017:0392-1
SUSE-SU-2017:1442-1
SUSE-SU-2017:2598-1
SUSE-SU-2018:0284-1
SUSE-SU-2018:0336-1
SUSE-SU-2018:2305-1
SUSE-SU-2018:3253-1
SUSE-SU-2019:1744-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • coreutils-8.29-lp150.2 is installed
  • OR coreutils-lang-8.29-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • bluez-5.48-lp151.8.3 is installed
  • OR bluez-auto-enable-devices-5.48-lp151.8.3 is installed
  • OR bluez-cups-5.48-lp151.8.3 is installed
  • OR bluez-devel-5.48-lp151.8.3 is installed
  • OR bluez-devel-32bit-5.48-lp151.8.3 is installed
  • OR bluez-test-5.48-lp151.8.3 is installed
  • OR libbluetooth3-5.48-lp151.8.3 is installed
  • OR libbluetooth3-32bit-5.48-lp151.8.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • dbus-1-1.2.10-3.31 is installed
  • OR dbus-1-32bit-1.2.10-3.31 is installed
  • OR dbus-1-x11-1.2.10-3.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND cabextract-1.2-2.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • xen-4.4.2_02-15 is installed
  • OR xen-kmp-default-4.4.2_02_k3.12.38_44-15 is installed
  • OR xen-libs-4.4.2_02-15 is installed
  • OR xen-libs-32bit-4.4.2_02-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • xen-4.5.3_08-17 is installed
  • OR xen-kmp-default-4.5.3_08_k3.12.59_60.45-17 is installed
  • OR xen-libs-4.5.3_08-17 is installed
  • OR xen-libs-32bit-4.5.3_08-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libspice-server1-0.12.7-8 is installed
  • OR spice-0.12.7-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libvirt-3.3.0-5.3 is installed
  • OR libvirt-admin-3.3.0-5.3 is installed
  • OR libvirt-client-3.3.0-5.3 is installed
  • OR libvirt-daemon-3.3.0-5.3 is installed
  • OR libvirt-daemon-config-network-3.3.0-5.3 is installed
  • OR libvirt-daemon-config-nwfilter-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-interface-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-libxl-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-lxc-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-network-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-nodedev-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-nwfilter-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-qemu-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-secret-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-core-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-disk-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-iscsi-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-logical-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-mpath-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-rbd-3.3.0-5.3 is installed
  • OR libvirt-daemon-driver-storage-scsi-3.3.0-5.3 is installed
  • OR libvirt-daemon-lxc-3.3.0-5.3 is installed
  • OR libvirt-daemon-qemu-3.3.0-5.3 is installed
  • OR libvirt-daemon-xen-3.3.0-5.3 is installed
  • OR libvirt-doc-3.3.0-5.3 is installed
  • OR libvirt-libs-3.3.0-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • evince-3.20.2-6.22 is installed
  • OR evince-browser-plugin-3.20.2-6.22 is installed
  • OR evince-lang-3.20.2-6.22 is installed
  • OR evince-plugin-djvudocument-3.20.2-6.22 is installed
  • OR evince-plugin-dvidocument-3.20.2-6.22 is installed
  • OR evince-plugin-pdfdocument-3.20.2-6.22 is installed
  • OR evince-plugin-psdocument-3.20.2-6.22 is installed
  • OR evince-plugin-tiffdocument-3.20.2-6.22 is installed
  • OR evince-plugin-xpsdocument-3.20.2-6.22 is installed
  • OR libevdocument3-4-3.20.2-6.22 is installed
  • OR libevview3-3-3.20.2-6.22 is installed
  • OR nautilus-evince-3.20.2-6.22 is installed
  • OR typelib-1_0-EvinceDocument-3_0-3.20.2-6.22 is installed
  • OR typelib-1_0-EvinceView-3_0-3.20.2-6.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND apache2-mod_nss-1.0.8-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • tomcat-8.0.43-10.24 is installed
  • OR tomcat-admin-webapps-8.0.43-10.24 is installed
  • OR tomcat-docs-webapp-8.0.43-10.24 is installed
  • OR tomcat-el-3_0-api-8.0.43-10.24 is installed
  • OR tomcat-javadoc-8.0.43-10.24 is installed
  • OR tomcat-jsp-2_3-api-8.0.43-10.24 is installed
  • OR tomcat-lib-8.0.43-10.24 is installed
  • OR tomcat-servlet-3_1-api-8.0.43-10.24 is installed
  • OR tomcat-webapps-8.0.43-10.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gpg2-2.0.24-3 is installed
  • OR gpg2-lang-2.0.24-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND wpa_supplicant-2.6-15.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • openslp-2.0.0-18.17 is installed
  • OR openslp-32bit-2.0.0-18.17 is installed
  • OR openslp-server-2.0.0-18.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kernel-default-4.4.121-92.73 is installed
  • OR kernel-default-base-4.4.121-92.73 is installed
  • OR kernel-default-devel-4.4.121-92.73 is installed
  • OR kernel-default-man-4.4.121-92.73 is installed
  • OR kernel-devel-4.4.121-92.73 is installed
  • OR kernel-macros-4.4.121-92.73 is installed
  • OR kernel-source-4.4.121-92.73 is installed
  • OR kernel-syms-4.4.121-92.73 is installed
  • OR kgraft-patch-4_4_121-92_73-default-1-3.3 is installed
  • OR kgraft-patch-SLE12-SP2_Update_21-1-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • curl-7.37.0-36 is installed
  • OR libcurl4-7.37.0-36 is installed
  • OR libcurl4-32bit-7.37.0-36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • glibc-2.22-62.22 is installed
  • OR glibc-32bit-2.22-62.22 is installed
  • OR glibc-devel-2.22-62.22 is installed
  • OR glibc-devel-32bit-2.22-62.22 is installed
  • OR glibc-html-2.22-62.22 is installed
  • OR glibc-i18ndata-2.22-62.22 is installed
  • OR glibc-info-2.22-62.22 is installed
  • OR glibc-locale-2.22-62.22 is installed
  • OR glibc-locale-32bit-2.22-62.22 is installed
  • OR glibc-profile-2.22-62.22 is installed
  • OR glibc-profile-32bit-2.22-62.22 is installed
  • OR nscd-2.22-62.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_72-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_22-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_64-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_20-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • xen-4.9.3_03-3.44 is installed
  • OR xen-doc-html-4.9.3_03-3.44 is installed
  • OR xen-libs-4.9.3_03-3.44 is installed
  • OR xen-libs-32bit-4.9.3_03-3.44 is installed
  • OR xen-tools-4.9.3_03-3.44 is installed
  • OR xen-tools-domU-4.9.3_03-3.44 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • crash-7.2.1-2 is installed
  • OR crash-kmp-default-7.2.1_k4.12.14_94.41-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.5 is installed
  • OR libavcodec-devel-3.4.2-4.5 is installed
  • OR libavformat-devel-3.4.2-4.5 is installed
  • OR libavformat57-3.4.2-4.5 is installed
  • OR libavresample-devel-3.4.2-4.5 is installed
  • OR libavresample3-3.4.2-4.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.7 is installed
  • OR kernel-default-extra-4.12.14-197.7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr4.10-30.5 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr4.10-30.5 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr4.10-30.5 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr4.10-30.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • kernel-default-4.4.121-92.135 is installed
  • OR kernel-default-base-4.4.121-92.135 is installed
  • OR kernel-default-devel-4.4.121-92.135 is installed
  • OR kernel-default-man-4.4.121-92.135 is installed
  • OR kernel-devel-4.4.121-92.135 is installed
  • OR kernel-macros-4.4.121-92.135 is installed
  • OR kernel-source-4.4.121-92.135 is installed
  • OR kernel-syms-4.4.121-92.135 is installed
  • OR kgraft-patch-4_4_121-92_135-default-1-3.5 is installed
  • OR kgraft-patch-SLE12-SP2_Update_35-1-3.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-loofah-2.0.2-3.8 is installed
  • OR rubygem-loofah-2.0.2-3.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND nodejs6-6.17.0-11.27 is installed
  • BACK