On Tue Sep 22, 2026 at 9:01 AM CEST, Bhavesh R Maheshwari via 
lists.openembedded.org wrote:
> From: Bhavesh R Maheshwari <[email protected]>
>
> Pick the patch from [1] and [2], mentioned in PR#23783 [3] which is
> referenced in the NVD report [4]
>
> [1] 
> https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/f0f634b6585fdc7bbb43ab3ae461499bfca9ad2e
> [2] 
> https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/5d7112c60e6f0f0742ce47d448e6da0718a70f4c
> [3] https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/23783
> [4] https://nvd.nist.gov/vuln/detail/cve-2026-66036
>
> Signed-off-by: Bhavesh R Maheshwari <[email protected]>
> ---
>  .../ffmpeg/ffmpeg/CVE-2026-66036_p1.patch     | 120 ++++++++++++++++++
>  .../ffmpeg/ffmpeg/CVE-2026-66036_p2.patch     |  71 +++++++++++
>  .../recipes-multimedia/ffmpeg/ffmpeg_8.0.3.bb |   2 +
>  3 files changed, 193 insertions(+)
>  create mode 100644 
> meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch
>  create mode 100644 
> meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p2.patch
>
> diff --git a/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch 
> b/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch
> new file mode 100644
> index 0000000000..bce0265114
> --- /dev/null
> +++ b/meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2026-66036_p1.patch
> @@ -0,0 +1,120 @@
> +From 7ac88955c4678fc10cc44a786ff9bf724bb12deb Mon Sep 17 00:00:00 2001
> +From: Michael Niedermayer <[email protected]>
> +Date: Sun, 12 Jul 2026 13:05:07 +0200
> +Subject: [PATCH 1/2] avfilter/vf_hqdn3d: reject unsupported frame parameter
> + changes
> +
> +Fixes: out of array access
> +Fixes: 9aj_hqdn3d_dynamic_res.mjpg / 9aj_generate_hqdn3d_dynamic_res_mjpg.py
> +Fixes: wWDsy2oDvMuR
> +Found-by: Adrian Junge (vurlo) <[email protected]>
> +
> +CVE: CVE-2026-66036
> +Upstream-Status: Backport 
> [https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/f0f634b6585fdc7bbb43ab3ae461499bfca9ad2e]
> +
> +Signed-off-by: Bhavesh R Maheshwari <[email protected]>
> +---
> + libavfilter/vf_hqdn3d.c | 34 +++++++++++++++++++++++++---------
> + libavfilter/vf_hqdn3d.h |  2 ++
> + 2 files changed, 27 insertions(+), 9 deletions(-)
> +
> +diff --git a/libavfilter/vf_hqdn3d.h b/libavfilter/vf_hqdn3d.h
> +index 3279bbcc77..3467f27145 100644
> +--- a/libavfilter/vf_hqdn3d.h
> ++++ b/libavfilter/vf_hqdn3d.h
> +@@ -36,6 +36,8 @@ typedef struct HQDN3DContext {
> +     double strength[4];
> +     int hsub, vsub;
> +     int depth;
> ++    int width, height;
> ++    enum AVPixelFormat format;
> +     void (*denoise_row[17])(uint8_t *src, uint8_t *dst, uint16_t *line_ant, 
> uint16_t *frame_ant, ptrdiff_t w, int16_t *spatial, int16_t *temporal);
> + } HQDN3DContext;

Hello,

This change touches exposed/documented API: 
https://www.ffmpeg.org/doxygen/8.0/structHQDN3DContext.html
Are you sure this does not break existing code?

Thanks!
-- 
Yoann Congal
Smile ECS

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#246642): 
https://lists.openembedded.org/g/openembedded-core/message/246642
Mute This Topic: https://lists.openembedded.org/mt/121370954/21656
Group Owner: [email protected]
Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub 
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to