stable

ffmpeg-6.1.1-19.fc40

FEDORA-2024-810afc5c2e created by ngompa 3 months ago for Fedora 40

Backport fix for CVE-2023-49528 and backport fixes for compatibility with Mesa 24.0.6+ / 24.1.4+ for VA-API

Reboot Required
After installing this update it is required that you reboot your system to ensure the changes supplied by this update are applied properly.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-810afc5c2e

This update has been submitted for testing by ngompa.

3 months ago

This update's test gating status has been changed to 'waiting'.

3 months ago

ngompa edited this update.

3 months ago

This update's test gating status has been changed to 'passed'.

3 months ago
User Icon farchord commented & provided feedback 3 months ago
karma

Installs!

BZ#2274694 CVE-2023-49528 ffmpeg: Heap Buffer Overflow vulnerability [fedora-all]
User Icon timaeos commented & provided feedback 3 months ago
karma

Successfully installed and was able to transcode a video into a gif

BZ#2274694 CVE-2023-49528 ffmpeg: Heap Buffer Overflow vulnerability [fedora-all]

This update has been submitted for stable by bodhi.

3 months ago

This update has been pushed to stable.

3 months ago
User Icon decathorpe commented & provided feedback 3 months ago

This does not fix garbled AV1 decode in Firefox with 24.1.4+ for me.

karma
User Icon calosis commented & provided feedback 3 months ago
karma

Update doesn't fix AV1 decode using Firefox and YouTube. Mesa 24.1.4 -- AMD Ryzen 5 7535U

User Icon dhxxx commented & provided feedback 3 months ago

I assume Firefox use bundled ffmpeg. It's marked to be fixed for Firefox 130 [1].

[1] https://bugzilla.mozilla.org/show_bug.cgi?id=1902227


Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
2
Stable by Time
14 days
Dates
submitted
3 months ago
in stable
3 months ago
modified
3 months ago
approved
3 months ago
BZ#2274694 CVE-2023-49528 ffmpeg: Heap Buffer Overflow vulnerability [fedora-all]
0
2

Automated Test Results