[FFmpeg-cvslog] document APE patch

Reinhard Tartler git at videolan.org
Thu Mar 17 18:07:19 CET 2011


ffmpeg | branch: release/0.5 | Reinhard Tartler <siretart at tauware.de> | Thu Mar 17 13:09:40 2011 +0100| [f17b89278709423b7eb76d7ed5eec5f82df57329] | committer: Reinhard Tartler

document APE patch

> http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f17b89278709423b7eb76d7ed5eec5f82df57329
---

 Changelog |    2 ++
 1 files changed, 2 insertions(+), 0 deletions(-)

diff --git a/Changelog b/Changelog
index e40599c..fbbabc2 100644
--- a/Changelog
+++ b/Changelog
@@ -8,6 +8,8 @@ version 0.5.4:
 - Fix crashes in Vorbis decoding found by zzuf (addresses CVE-2010-4704)
 - Fix another crash in Vorbis decoding (addresses CVE-2011-0480, Chrome issue 68115)
 - Fix invalid reads in VC-1 decoding (related to CVE-2011-0723)
+- Do not attempt to decode APE file with no frames
+  (adresses http://packetstorm.linuxsecurity.com/1103-exploits/vlc105-dos.txt)
 
 
 




More information about the ffmpeg-cvslog mailing list