This bug was fixed in the package ffmpeg - 7:2.8.6-1ubuntu1
---------------
ffmpeg (7:2.8.6-1ubuntu1) xenial; urgency=low
* Merge from Debian unstable. Remaining changes:
- Compile with -O2 rather than -O3 on s390x, to work around
https://bugs.launchpad.net/bugs/1526324.
* Should fix LP: #1533367
ffmpeg (7:2.8.6-1) unstable; urgency=medium
* Import new upstream bugfix release 2.8.6.
* Update Standards-Version to 3.9.7.
- Move documentatation from /u/s/d/ffmpeg-doc/ to /u/s/d/ffmpeg/.
* Use https for the Vcs-Git link.
ffmpeg (7:2.8.5-1) unstable; urgency=medium
* Import new upstream bugfix release 2.8.5.
- Fixes CVE-2016-1897 and CVE-2016-1898.
* Update doc-make-apidoc-output-independent-of-SRC_PATH.patch.
* Add patch to make out-of-tree builds bit-identical to in-tree-builds.
* Enable the now available opencv and frei0r on mips64el.
* Fix altivec-extra compile time optimization.
* Update copyright year for the debian files.
* Change priority of libavcodec*-extra* to extra.
-- Iain Lane <[email protected]> Thu, 25 Feb 2016 17:48:20
+0000
** Changed in: ffmpeg (Ubuntu Xenial)
Status: Confirmed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1533367
Title:
ffmpeg allows Server-Side Request Forgery attack
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ffmpeg/+bug/1533367/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs