Hello community, here is the log from the commit of package ffmpeg for openSUSE:Factory checked in at 2017-09-13 21:36:48 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/ffmpeg (Old) and /work/SRC/openSUSE:Factory/.ffmpeg.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "ffmpeg" Wed Sep 13 21:36:48 2017 rev:34 rq:523674 version:3.3.4 Changes: -------- --- /work/SRC/openSUSE:Factory/ffmpeg/ffmpeg.changes 2017-09-07 22:12:40.215574850 +0200 +++ /work/SRC/openSUSE:Factory/.ffmpeg.new/ffmpeg.changes 2017-09-13 21:37:12.660148236 +0200 @@ -1,0 +2,21 @@ +Tue Sep 12 10:57:37 UTC 2017 - [email protected] + +- Update to new upstream release 3.3.4. + * avutil/pixdesc: fixed NULL deref in av_color_primaries_name + [CVE-2017-14225] [boo#1058018] + * avformat/asfdec: Fix DoS in asf_build_simple_index + [CVE-2017-14223] [boo#1058019] + * avformat/mov: Fix DoS in read_tfra + [CVE-2017-14222] [boo#1058020]. +- Dropped integrated patches: + D 0001-avformat-hls-Fix-DoS-due-to-infinite-loop.patch + D 0001-avformat-nsvdec-Fix-DoS-due-to-lack-of-eof-check-in-.patch + D 0002-avformat-asfdec-Fix-DoS-due-to-lack-of-eof-check.patch + D 0002-avformat-mxfdec-Fix-DoS-issues-in-mxf_read_index_ent.patch + D 0003-avformat-cinedec-Fix-DoS-due-to-lack-of-eof-check.patch + D 0003-avformat-mxfdec-Fix-Sign-error-in-mxf_read_primer_pa.patch + D 0004-avformat-rmdec-Fix-DoS-due-to-lack-of-eof-check.patch + D 0005-avformat-rl2-Fix-DoS-due-to-lack-of-eof-check.patch + D 0006-avformat-mvdec-Fix-DoS-due-to-lack-of-eof-check.patch + +------------------------------------------------------------------- Old: ---- 0001-avformat-hls-Fix-DoS-due-to-infinite-loop.patch 0001-avformat-nsvdec-Fix-DoS-due-to-lack-of-eof-check-in-.patch 0002-avformat-asfdec-Fix-DoS-due-to-lack-of-eof-check.patch 0002-avformat-mxfdec-Fix-DoS-issues-in-mxf_read_index_ent.patch 0003-avformat-cinedec-Fix-DoS-due-to-lack-of-eof-check.patch 0003-avformat-mxfdec-Fix-Sign-error-in-mxf_read_primer_pa.patch 0004-avformat-rmdec-Fix-DoS-due-to-lack-of-eof-check.patch 0005-avformat-rl2-Fix-DoS-due-to-lack-of-eof-check.patch 0006-avformat-mvdec-Fix-DoS-due-to-lack-of-eof-check.patch ffmpeg-3.3.3.tar.xz ffmpeg-3.3.3.tar.xz.asc New: ---- ffmpeg-3.3.4.tar.xz ffmpeg-3.3.4.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ ffmpeg.spec ++++++ --- /var/tmp/diff_new_pack.tAoFGE/_old 2017-09-13 21:37:13.524026689 +0200 +++ /var/tmp/diff_new_pack.tAoFGE/_new 2017-09-13 21:37:13.528026126 +0200 @@ -30,7 +30,7 @@ %bcond_with opencore Name: ffmpeg -Version: 3.3.3 +Version: 3.3.4 Release: 0 Summary: Library for working with various multimedia formats License: LGPL-2.1+ and GPL-2.0+ @@ -50,15 +50,6 @@ Patch3: ffmpeg-pkgconfig-version.patch Patch4: ffmpeg-new-coder-errors.diff Patch5: ffmpeg-codec-choice.diff -Patch6: 0001-avformat-hls-Fix-DoS-due-to-infinite-loop.patch -Patch7: 0002-avformat-asfdec-Fix-DoS-due-to-lack-of-eof-check.patch -Patch8: 0003-avformat-cinedec-Fix-DoS-due-to-lack-of-eof-check.patch -Patch9: 0004-avformat-rmdec-Fix-DoS-due-to-lack-of-eof-check.patch -Patch10: 0005-avformat-rl2-Fix-DoS-due-to-lack-of-eof-check.patch -Patch11: 0006-avformat-mvdec-Fix-DoS-due-to-lack-of-eof-check.patch -Patch12: 0001-avformat-nsvdec-Fix-DoS-due-to-lack-of-eof-check-in-.patch -Patch13: 0002-avformat-mxfdec-Fix-DoS-issues-in-mxf_read_index_ent.patch -Patch14: 0003-avformat-mxfdec-Fix-Sign-error-in-mxf_read_primer_pa.patch BuildRequires: ladspa-devel BuildRequires: libgsm-devel BuildRequires: libmp3lame-devel @@ -402,8 +393,7 @@ %prep %setup -q -%patch -P 1 -P 2 -P 3 -P 4 -P 5 -P 6 -P 7 -P 8 -P 9 -P 10 -p1 -%patch -P 11 -P 12 -P 13 -P 14 -p1 +%patch -P 1 -P 2 -P 3 -P 4 -P 5 -p1 %build perl -i -pe 's{__TIME__|__DATE__}{"$&"}g' *.c ++++++ ffmpeg-3.3.3.tar.xz -> ffmpeg-3.3.4.tar.xz ++++++ /work/SRC/openSUSE:Factory/ffmpeg/ffmpeg-3.3.3.tar.xz /work/SRC/openSUSE:Factory/.ffmpeg.new/ffmpeg-3.3.4.tar.xz differ: char 26, line 1
