openSUSE-SU-2021:3521-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:3521-1
openSUSE-SU-2021:3521-1
Summary: Security update for ffmpeg
Details: This update for ffmpeg fixes the following issues: - CVE-2021-3566: Fixed information leak (bsc#1189166). - CVE-2021-38093: Fixed integer overflow vulnerability in filter_robert() (bsc#1190734) - CVE-2021-38092: Fixed integer overflow vulnerability in filter_prewitt() (bsc#1190733) - CVE-2021-38094: Fixed integer overflow vulnerability in filter_sobel() (bsc#1190735) - CVE-2020-22037: Fixed denial of service vulnerability caused by memory leak in avcodec_alloc_context3() (bsc#1186756) - CVE-2020-35965: Fixed out-of-bounds write in decode_frame() (bsc#1187852) - CVE-2020-20892: Fixed an issue with filter_frame() (bsc#1190719) - CVE-2020-20891: Fixed a buffer overflow vulnerability in config_input() (bsc#1190718) - CVE-2020-20895: Fixed a buffer overflow vulnerability in function filter_vertically_##name (bsc#1190722) - CVE-2020-20896: Fixed an issue with latm_write_packet() (bsc#1190723) - CVE-2020-20899: Fixed a buffer overflow vulnerability in config_props() (bsc#1190726) - CVE-2020-20902: Fixed an out-of-bounds read vulnerabilit long_term_filter() (bsc#1190729)
References: https://lists.opensuse.org/archives/list/[email protected]/thread/HVCB2YATP2LRWUBIGFYZQUFV52VSFT2B/, https://bugzilla.suse.com/1186756, https://bugzilla.suse.com/1187852, https://bugzilla.suse.com/1189166, https://bugzilla.suse.com/1190718, https://bugzilla.suse.com/1190719, https://bugzilla.suse.com/1190722, https://bugzilla.suse.com/1190723, https://bugzilla.suse.com/1190726, https://bugzilla.suse.com/1190729, https://bugzilla.suse.com/1190733, https://bugzilla.suse.com/1190734, https://bugzilla.suse.com/1190735, https://www.suse.com/security/cve/CVE-2020-20891, https://www.suse.com/security/cve/CVE-2020-20892, https://www.suse.com/security/cve/CVE-2020-20895, https://www.suse.com/security/cve/CVE-2020-20896, https://www.suse.com/security/cve/CVE-2020-20899, https://www.suse.com/security/cve/CVE-2020-20902, https://www.suse.com/security/cve/CVE-2020-22037, https://www.suse.com/security/cve/CVE-2020-35965, https://www.suse.com/security/cve/CVE-2021-3566, https://www.suse.com/security/cve/CVE-2021-38092, https://www.suse.com/security/cve/CVE-2021-38093, https://www.suse.com/security/cve/CVE-2021-38094
Affected packages
Package
Name: ffmpeg
Purl: pkg:rpm/opensuse/ffmpeg&distro=openSUSE%20Leap%2015.3
Affected ranges
Type: ECOSYSTEM
Events:
