On Tue Sep 22, 2026 at 9:01 AM CEST, Bhavesh R Maheshwari via lists.openembedded.org wrote: > From: Bhavesh R Maheshwari <[email protected]> > > Pick the patch from [1] and [2], mentioned in PR#23783 [3] which is > referenced in the NVD report [4] > > [1] > https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/f0f634b6585fdc7bbb43ab3ae461499bfca9ad2e > [2] > https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/5d7112c60e6f0f0742ce47d448e6da0718a70f4c > [3] https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/23783 > [4] https://nvd.nist.gov/vuln/detail/cve-2026-66036 > > Signed-off-by: Bhavesh R Maheshwari <[email protected]> > --- > .../ffmpeg/ffmpeg/CVE-2026-66036_p1.patch | 120 ++++++++++++++++++ > .../ffmpeg/ffmpeg/CVE-2026-66036_p2.patch | 71 +++++++++++ > .../recipes-multimedia/ffmpeg/ffmpeg_8.0.3.bb | 2 + > 3 files changed, 193 insertions(+) > create mode 100644 > meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch > create mode 100644 > meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p2.patch > > diff --git a/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch > b/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch > new file mode 100644 > index 0000000000..bce0265114 > --- /dev/null > +++ b/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch > @@ -0,0 +1,120 @@ > +From 7ac88955c4678fc10cc44a786ff9bf724bb12deb Mon Sep 17 00:00:00 2001 > +From: Michael Niedermayer <[email protected]> > +Date: Sun, 12 Jul 2026 13:05:07 +0200 > +Subject: [PATCH 1/2] avfilter/vf_hqdn3d: reject unsupported frame parameter > + changes > + > +Fixes: out of array access > +Fixes: 9aj_hqdn3d_dynamic_res.mjpg / 9aj_generate_hqdn3d_dynamic_res_mjpg.py > +Fixes: wWDsy2oDvMuR > +Found-by: Adrian Junge (vurlo) <[email protected]> > + > +CVE: CVE-2026-66036 > +Upstream-Status: Backport > [https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/f0f634b6585fdc7bbb43ab3ae461499bfca9ad2e] > + > +Signed-off-by: Bhavesh R Maheshwari <[email protected]> > +--- > + libavfilter/vf_hqdn3d.c | 34 +++++++++++++++++++++++++--------- > + libavfilter/vf_hqdn3d.h | 2 ++ > + 2 files changed, 27 insertions(+), 9 deletions(-) > + > +diff --git a/libavfilter/vf_hqdn3d.h b/libavfilter/vf_hqdn3d.h > +index 3279bbcc77..3467f27145 100644 > +--- a/libavfilter/vf_hqdn3d.h > ++++ b/libavfilter/vf_hqdn3d.h > +@@ -36,6 +36,8 @@ typedef struct HQDN3DContext { > + double strength[4]; > + int hsub, vsub; > + int depth; > ++ int width, height; > ++ enum AVPixelFormat format; > + void (*denoise_row[17])(uint8_t *src, uint8_t *dst, uint16_t *line_ant, > uint16_t *frame_ant, ptrdiff_t w, int16_t *spatial, int16_t *temporal); > + } HQDN3DContext;
Hello, This change touches exposed/documented API: https://www.ffmpeg.org/doxygen/8.0/structHQDN3DContext.html Are you sure this does not break existing code? Thanks! -- Yoann Congal Smile ECS
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#246642): https://lists.openembedded.org/g/openembedded-core/message/246642 Mute This Topic: https://lists.openembedded.org/mt/121370954/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
