--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-810afc5c2e
2024-07-21 01:38:57.829399
--------------------------------------------------------------------------------

Name        : ffmpeg
Product     : Fedora 40
Version     : 6.1.1
Release     : 19.fc40
URL         : https://ffmpeg.org/
Summary     : A complete solution to record, convert and stream audio and video
Description :
FFmpeg is a leading multimedia framework, able to decode, encode, transcode,
mux, demux, stream, filter and play pretty much anything that humans and
machines have created. It supports the most obscure ancient formats up to the
cutting edge. No matter if they were designed by some standards committee, the
community or a corporation.


This build of ffmpeg is limited in the number of codecs supported.

--------------------------------------------------------------------------------
Update Information:

Backport fix for CVE-2023-49528 and backport fixes for compatibility with Mesa
24.0.6+ / 24.1.4+ for VA-API
--------------------------------------------------------------------------------
ChangeLog:

* Sat Jul 20 2024 Neal Gompa  - 6.1.1-19
- Backport fixes for Mesa 24.0.6+ / 21.1.4+ changes for VA-API
* Wed Jul 17 2024 Fedora Release Engineering  - 6.1.1-18
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Tue Jul 16 2024 Nicolas Chauvet  - 6.1.1-17
- Rebuilt for libplacebo/vmaf
* Wed Jun 19 2024 Dominik Mierzejewski  - 6.1.1-16
- Backport fix for CVE-2023-49528
* Thu Jun 13 2024 Sandro Mani  - 6.1.1-15
- Rebuild for tesseract-5.4.1
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2274694 - CVE-2023-49528 ffmpeg: Heap Buffer Overflow vulnerability [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2274694
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-810afc5c2e' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue

Fedora 40: ffmpeg 2024-810afc5c2e Security Advisory Updates

July 21, 2024
Backport fix for CVE-2023-49528 and backport fixes for compatibility with Mesa 24.0.6+ / 24.1.4+ for VA-API

Summary

FFmpeg is a leading multimedia framework, able to decode, encode, transcode,

mux, demux, stream, filter and play pretty much anything that humans and

machines have created. It supports the most obscure ancient formats up to the

cutting edge. No matter if they were designed by some standards committee, the

community or a corporation.

This build of ffmpeg is limited in the number of codecs supported.

Update Information:

Backport fix for CVE-2023-49528 and backport fixes for compatibility with Mesa 24.0.6+ / 24.1.4+ for VA-API

Change Log

* Sat Jul 20 2024 Neal Gompa - 6.1.1-19 - Backport fixes for Mesa 24.0.6+ / 21.1.4+ changes for VA-API * Wed Jul 17 2024 Fedora Release Engineering - 6.1.1-18 - Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild * Tue Jul 16 2024 Nicolas Chauvet - 6.1.1-17 - Rebuilt for libplacebo/vmaf * Wed Jun 19 2024 Dominik Mierzejewski - 6.1.1-16 - Backport fix for CVE-2023-49528 * Thu Jun 13 2024 Sandro Mani - 6.1.1-15 - Rebuild for tesseract-5.4.1

References

[ 1 ] Bug #2274694 - CVE-2023-49528 ffmpeg: Heap Buffer Overflow vulnerability [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2274694

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-810afc5c2e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
Name : ffmpeg
Product : Fedora 40
Version : 6.1.1
Release : 19.fc40
URL : https://ffmpeg.org/
Summary : A complete solution to record, convert and stream audio and video

Related News