[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
** Changed in: hundredpapercuts Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
This bug was fixed in the package ffmpeg - 7:2.8.8-0ubuntu0.16.04.1 --- ffmpeg (7:2.8.8-0ubuntu0.16.04.1) xenial-security; urgency=medium * Import new upstream bugfix release 2.8.8. (LP: #1581156) - Fixes CVE-2016-6164 and CVE-2016-6881. -- Andreas CadhalpunSat, 15 Oct 2016 16:58:13 +0200 ** Changed in: ffmpeg (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
ACK on the debdiff in comment #1, thanks! Packages are building now and will be released today or tomorrow. Thanks! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
** Tags added: upgrade-software-version -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
Attached is a debdiff. (git repo is at [1]) Testing performed (in a xenial chroot): * build including test suite works * installation works * upgrade works * autopkgtests pass 1: https://anonscm.debian.org/cgit/pkg- multimedia/ffmpeg.git/log/?h=xenial ** Patch added: "debdiff for 2.8.8" https://bugs.launchpad.net/ubuntu/+source/ffmpeg/+bug/1581156/+attachment/4761570/+files/ffmpeg_2.8.8.debdiff ** Information type changed from Public to Public Security ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2016-6164 ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2016-6881 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
** Changed in: ffmpeg (Ubuntu) Importance: Undecided => High ** Also affects: hundredpapercuts Importance: Undecided Status: New ** Changed in: hundredpapercuts Status: New => Confirmed ** Changed in: hundredpapercuts Importance: Undecided => High -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1581156 Title: Update to bugfix release 2.8.8 in Xenial To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1581156/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1581156] Re: Update to bugfix release 2.8.8 in Xenial
** Summary changed: - Update to bugfix release 2.8.7 in Xenial + Update to bugfix release 2.8.8 in Xenial ** Description changed: - http://git.videolan.org/?p=ffmpeg.git;a=blob;f=Changelog;h=3d02e8967e39491f58a998cdd9d8de9aad4bbfc2;hb=refs/heads/release/2.8 + http://git.videolan.org/?p=ffmpeg.git;a=blob;f=Changelog;h=bc18dc3508f301cac5684f89e3f982ac3a879124;hb=refs/heads/release/2.8 + + + version 2.8.8 + - avformat/movenc: Check packet in mov_write_single_packet() too + - avformat/movenc: Factor check_pkt() out + - avformat/utils: fix timebase error in avformat_seek_file() + - avcodec/g726: Add missing ADDB output mask + - avcodec/avpacket: clear side_data_elems + - avcodec/ccaption_dec: Use simple array instead of AVBuffer + - swscale/swscale_unscaled: Try to fix Rgb16ToPlanarRgb16Wrapper() with slices + - swscale/swscale_unscaled: Fix packed_16bpc_bswap() with slices + - avformat/avidec: Fix infinite loop in avi_read_nikon() + - cmdutils: fix implicit declaration of SetDllDirectory function + - cmdutils: check for SetDllDirectory() availability + - avcodec/aacenc: Tighter input checks + - libavcodec/wmalosslessdec: Check the remaining bits + - avcodec/diracdec: Check numx/y + - avcodec/indeo2: check ctab + - avformat/swfdec: Fix inflate() error code check + - avcodec/h264: Put context_count check back + - cmdutils: remove the current working directory from the DLL search path on win32 + - avcodec/raw: Fix decoding of ilacetest.mov + - avcodec/ffv1enc: Fix assertion failure with non zero bits per sample + - avformat/oggdec: Fix integer overflow with invalid pts + - ffplay: Fix invalid array index + - avcodec/vp9_parser: Check the input frame sizes for being consistent + - libavformat/rtpdec_asf: zero initialize the AVIOContext struct + - libavutil/opt: Small bugfix in example. + - libx264: Increase x264 opts character limit to 4096 + - avformat/mov: Check sample size + - avformat/format: Fix registering a format more than once and related races + - avcodec/flac_parser: Raise threshold for detecting invalid data + - avfilter/vf_telecine: Make frame writable before writing into it + - avcodec/mpc8: Correct end truncation + - avcodec/mpegvideo: Do not clear the parse context during init + - MAINTAINERs cleanup (remove myself from things i de facto dont maintain) + - avcodec/h264: Fix off by 1 context count + - avcodec/alsdec: Check r to prevent out of array read + - avcodec/alsdec: fix max bits in ltp prefix code + - avcodec/utils: check skip_samples signedness + - avformat/mpegts: Do not trust BSSD descriptor, it is sometimes not an S302M stream + - avcodec/bmp_parser: Check fsize + - avcodec/bmp_parser: reset state + - avcodec/bmp_parser: Fix remaining size + - avcodec/bmp_parser: Fix frame_start_found in cross frame cases + - avfilter/af_amix: dont fail if there are no samples in output_frame() + - avformat/allformats: Making av_register_all() thread-safe. + - avcodec/mpegvideo: Deallocate last/next picture earlier + - avcodec/bmp_parser: Fix state + - avformat/oggparseopus: Fix Undefined behavior in oggparseopus.c and libavformat/utils.c + - doc/developer.texi: Add a code of conduct + - avformat/avidec: Detect index with too short entries + - avformat/utils: Check negative bps before shifting in ff_get_pcm_codec_id() + - avformat/utils: Do not compute the bitrate from duration == 0 + - ffmpeg: Check that r_frame_rate is set before attempting to use it + - swresample/rematrix: Use clipping s16 rematrixing if overflows are possible + - swresample/rematrix: Use error diffusion to avoid error in the DC component of the matrix + - libavformat/oggdec: Free stream private when header parsing fails. + - avformat/utils: Check bps before using it in a shift in ff_get_pcm_codec_id() + - avformat/oggparseopus: Check that granule pos is within the supported range + - avcodec/mjpegdec: Do not try to detect last scan but apply idct after all scans for progressive jpeg + - avformat/options_table: Add missing identifier for very strict compliance + - librtmp: Avoid an infiniloop setting connection arguments + - avformat/oggparsevp8: fix pts calculation on pages ending with an invisible frame + version 2.8.7 - avcodec/motion_est: Attempt to fix "short data segment overflowed" on IA64 - avformat/ffmdec: Check pix_fmt - avcodec/ttaenc: Reallocate packet if its too small - pgssubdec: fix subpicture output colorspace and range - avcodec/ac3dec: Reset SPX when switching from EAC3 to AC3 - avfilter/vf_drawtext: Check return code of load_glyph() - avcodec/takdec: add code that got somehow lost in process of REing - avcodec/apedec: fix decoding of stereo files with one channel full of silence - avcodec/avpacket: Fix off by 5 error - avcodec/h264: Fix for H.264 configuration parsing - avcodec/bmp_parser: Ensure remaining_size is not too small in startcode packet crossing corner case - avfilter/src_movie: fix how we check for overflows with seek_point - avcodec/j2kenc: Add