Описание
Security update for libaom
This update for libaom fixes the following issues:
- CVE-2020-36129: Fixed stack buffer overflow via the component src/aom_image.c (bsc#1193356).
- CVE-2020-36131: Fixed stack buffer overflow via the component stats/rate_hist.c (bsc#1193365).
- CVE-2020-36135: Fixed NULL pointer dereference via the component rate_hist.c (bsc#1193366).
- CVE-2020-36130: Fixed NULL pointer dereference via the component av1/av1_dx_iface.c (bsc#1193369).
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Список пакетов
openSUSE Leap 15.2
aom-tools-1.0.0-lp152.3.9.1
libaom-devel-1.0.0-lp152.3.9.1
libaom-devel-doc-1.0.0-lp152.3.9.1
libaom0-1.0.0-lp152.3.9.1
libaom0-32bit-1.0.0-lp152.3.9.1
Ссылки
- E-Mail link for openSUSE-SU-2021:1624-1
- SUSE Security Ratings
- SUSE Bug 1193356
- SUSE Bug 1193365
- SUSE Bug 1193366
- SUSE Bug 1193369
- SUSE CVE CVE-2020-36129 page
- SUSE CVE CVE-2020-36130 page
- SUSE CVE CVE-2020-36131 page
- SUSE CVE CVE-2020-36135 page
Описание
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
Затронутые продукты
openSUSE Leap 15.2:aom-tools-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-doc-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom0-1.0.0-lp152.3.9.1
Ссылки
- CVE-2020-36129
- SUSE Bug 1193356
Описание
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
Затронутые продукты
openSUSE Leap 15.2:aom-tools-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-doc-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom0-1.0.0-lp152.3.9.1
Ссылки
- CVE-2020-36130
- SUSE Bug 1193369
Описание
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
Затронутые продукты
openSUSE Leap 15.2:aom-tools-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-doc-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom0-1.0.0-lp152.3.9.1
Ссылки
- CVE-2020-36131
- SUSE Bug 1193365
Описание
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
Затронутые продукты
openSUSE Leap 15.2:aom-tools-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom-devel-doc-1.0.0-lp152.3.9.1
openSUSE Leap 15.2:libaom0-1.0.0-lp152.3.9.1
Ссылки
- CVE-2020-36135
- SUSE Bug 1193366