[ubuntu/oracular-updates] ffmpeg 7:7.0.2-3ubuntu1.1 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Wed May 28 01:28:15 UTC 2025


ffmpeg (7:7.0.2-3ubuntu1.1) oracular-security; urgency=medium

  * SECURITY UPDATE: Out of Bounds Read
    - debian/patches/CVE-2025-0518.patch: Check return value of sscanf
    - CVE-2025-0518
  * SECURITY UPDATE: Memory Leak
    - debian/patches/CVE-2025-1816.patch: Add missing constraints for
      num_parameters in audio_element_oub()
    - CVE-2025-1816
  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2025-22919.patch: Check for valid sample rate
    - CVE-2025-22919
  * SECURITY UPDATE: Segmentation Fault
    - debian/patches/CVE-2025-22921.patch: Clear array length when freeing it
    - CVE-2025-22921
  * SECURITY UPDATE: Null Dereference
    - debian/patches/CVE-2025-25473.patch: Clear FFFormatContext packet queue
      when closing a muxer
    - CVE-2025-25473

Date: 2025-05-27 00:53:13.716912+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/ffmpeg/7:7.0.2-3ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list