Oval Definition:oval:org.opensuse.security:def:65304
Revision Date:2021-09-02Version:1
Title:Security update for ffmpeg (Important)
Description:

This update for ffmpeg fixes the following issues:

- CVE-2019-9721: Fix denial of service in the subtitle decoder in handle_open_brace from libavcodec/htmlsubtitles.c (bsc#1129714). - CVE-2020-22046: Fix a denial of service vulnerability exists in FFmpeg 4.2 due to a memory leak in the avpriv_float_dsp_allocl function in libavutil/float_dsp.c (bsc#1186849). - CVE-2020-22048: Fix a denial of service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_frame_pool_get function in framepool.c (bsc#1186859). - CVE-2020-22049: Fix a denial of service vulnerability exists in FFmpeg 4.2 due to a memory leak in the wtvfile_open_sector function in wtvdec.c (bsc#1186861). - CVE-2020-22054: Fix a denial of service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c (bsc#1186863). - CVE-2020-21688: Fixed a heap-use-after-free in the av_freep function in libavutil/mem.c (bsc#1189348). - CVE-2020-21697: Fixed a heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c (bsc#1189350). - CVE-2021-38114: Fixed a not checked return value of the init_vlc function (bsc#1189142).
Family:unixClass:patch
Status:Reference(s):1051510
1065729
1071995
1085030
1088047
1094555
1098633
1106383
1106751
1109137
1111666
1112178
1113956
1114279
1119532
1120423
1124167
1127155
1128432
1128902
1128910
1129714
1131645
1132154
1132390
1133401
1133738
1134303
1134395
1135296
1135556
1135642
1136157
1136598
1136922
1136935
1137103
1137194
1137429
1137625
1137728
1137884
1137995
1137996
1137998
1137999
1138000
1138002
1138003
1138005
1138006
1138007
1138008
1138009
1138010
1138011
1138012
1138013
1138014
1138015
1138016
1138017
1138018
1138019
1138291
1138293
1138374
1138375
1138589
1138719
1139771
1139782
1139865
1140133
1140328
1140405
1140424
1140428
1140575
1140577
1140637
1140658
1140715
1140719
1140726
1140727
1140728
1140814
1144333
1148868
1150660
1151927
1152107
1152624
1158983
1159058
1161016
1162002
1162063
1163309
1166985
1167104
1168081
1168959
1169194
1169514
1169771
1169795
1170011
1170442
1170592
1170617
1170618
1171124
1171424
1171529
1171530
1171558
1171732
1171739
1171743
1171753
1171759
1171835
1171841
1171868
1171904
1172247
1172257
1172344
1172458
1172484
1172537
1172538
1172687
1172719
1172759
1172775
1172781
1172782
1172783
1172871
1172872
1172999
1173060
1173074
1173146
1173265
1173280
1173284
1173428
1173514
1173567
1173573
1173659
1173746
1173818
1173820
1173825
1173826
1173833
1173838
1173839
1173845
1173857
1174113
1174115
1174122
1174123
1174186
1174187
1174296
1174343
1174356
1174409
1174438
1174462
1174543
1186849
1186859
1186861
1186863
1189142
1189348
1189350
CVE-2018-16871
CVE-2018-20836
CVE-2019-10126
CVE-2019-10638
CVE-2019-10639
CVE-2019-11599
CVE-2019-12380
CVE-2019-12456
CVE-2019-12614
CVE-2019-12818
CVE-2019-12819
CVE-2019-16746
CVE-2019-20810
CVE-2019-20908
CVE-2019-9721
CVE-2020-0305
CVE-2020-10766
CVE-2020-10767
CVE-2020-10768
CVE-2020-10769
CVE-2020-10773
CVE-2020-10781
CVE-2020-12771
CVE-2020-12888
CVE-2020-13974
CVE-2020-14416
CVE-2020-15393
CVE-2020-15780
CVE-2020-21688
CVE-2020-21697
CVE-2020-22046
CVE-2020-22048
CVE-2020-22049
CVE-2020-22054
CVE-2021-38114
SUSE-SU-2019:1829-1
SUSE-SU-2020:2107-1
SUSE-SU-2021:2919-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
SUSE Linux Enterprise Module for Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Manager Proxy 4.2
SUSE Manager Server 4.2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP1 is installed
  • AND Package Information
  • kernel-docs-4.12.14-197.48 is installed
  • OR kernel-obs-build-4.12.14-197.48 is installed
  • OR kernel-source-4.12.14-197.48 is installed
  • OR kernel-syms-4.12.14-197.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • cluster-md-kmp-azure-4.12.14-5.33 is installed
  • OR dlm-kmp-azure-4.12.14-5.33 is installed
  • OR gfs2-kmp-azure-4.12.14-5.33 is installed
  • OR kernel-azure-4.12.14-5.33 is installed
  • OR kernel-azure-base-4.12.14-5.33 is installed
  • OR kernel-azure-devel-4.12.14-5.33 is installed
  • OR kernel-azure-extra-4.12.14-5.33 is installed
  • OR kernel-azure-livepatch-4.12.14-5.33 is installed
  • OR kernel-devel-azure-4.12.14-5.33 is installed
  • OR kernel-source-azure-4.12.14-5.33 is installed
  • OR kernel-syms-azure-4.12.14-5.33 is installed
  • OR kselftests-kmp-azure-4.12.14-5.33 is installed
  • OR ocfs2-kmp-azure-4.12.14-5.33 is installed
  • OR reiserfs-kmp-azure-4.12.14-5.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP3 is installed
  • AND Package Information
  • libavcodec57-3.4.2-11.8.2 is installed
  • OR libavformat57-3.4.2-11.8.2 is installed
  • OR libavresample-devel-3.4.2-11.8.2 is installed
  • OR libavresample3-3.4.2-11.8.2 is installed
  • OR libavresample3-64bit-3.4.2-11.8.2 is installed
  • OR libavutil-devel-3.4.2-11.8.2 is installed
  • OR libavutil55-3.4.2-11.8.2 is installed
  • OR libpostproc-devel-3.4.2-11.8.2 is installed
  • OR libpostproc54-3.4.2-11.8.2 is installed
  • OR libswresample-devel-3.4.2-11.8.2 is installed
  • OR libswresample2-3.4.2-11.8.2 is installed
  • OR libswscale-devel-3.4.2-11.8.2 is installed
  • OR libswscale4-3.4.2-11.8.2 is installed
  • BACK