CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
90.8%
Debian Security Advisory DSA-2855-1 [email protected]
http://www.debian.org/security/ Moritz Muehlenhoff
February 05, 2014 http://www.debian.org/security/faq
Package : libav
Vulnerability : several
Problem type : local
Debian-specific: no
CVE ID : CVE-2011-3944 CVE-2013-0845 CVE-2013-0846 CVE-2013-0849
CVE-2013-0865 CVE-2013-7010 CVE-2013-7014 CVE-2013-7015
Several security issues have been corrected in multiple demuxers and
decoders of the libav multimedia library. The IDs mentioned above are just
a portion of the security issues fixed in this update. A full list of the
changes is available at
http://git.libav.org/?p=libav.git;a=blob;f=Changelog;hb=refs/tags/v0.8.10
For the stable distribution (wheezy), these problems have been fixed in
version 6:0.8.9-1.
For the unstable distribution (sid), these problems have been fixed in
version 6:9.11-1.
We recommend that you upgrade your libav packages.
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/
Mailing list: [email protected]
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Debian | 7 | kfreebsd-i386 | libswscale2 | < 6:0.8.10-1 | libswscale2_6:0.8.10-1_kfreebsd-i386.deb |
Debian | 7 | all | ffmpeg-doc | < 6:0.8.10-1 | ffmpeg-doc_6:0.8.10-1_all.deb |
Debian | 7 | sparc | libpostproc-dev | < 6:0.8.10-1 | libpostproc-dev_6:0.8.10-1_sparc.deb |
Debian | 7 | i386 | libavdevice-dev | < 6:0.8.10-1 | libavdevice-dev_6:0.8.10-1_i386.deb |
Debian | 7 | s390x | libswscale-dev | < 6:0.8.10-1 | libswscale-dev_6:0.8.10-1_s390x.deb |
Debian | 7 | powerpc | libavdevice53 | < 6:0.8.10-1 | libavdevice53_6:0.8.10-1_powerpc.deb |
Debian | 7 | all | libavformat-extra-53 | < 6:0.8.10-1 | libavformat-extra-53_6:0.8.10-1_all.deb |
Debian | 7 | ia64 | libavutil51 | < 6:0.8.10-1 | libavutil51_6:0.8.10-1_ia64.deb |
Debian | 7 | ia64 | libavformat53 | < 6:0.8.10-1 | libavformat53_6:0.8.10-1_ia64.deb |
Debian | 7 | ia64 | libpostproc52 | < 6:0.8.10-1 | libpostproc52_6:0.8.10-1_ia64.deb |