Your submission was sent successfully! Close

USN-3967-1: FFmpeg vulnerabilities

6 May 2019

FFmpeg could be made to crash if it opened a specially crafted file.

Releases

Packages

  • ffmpeg - Tools for transcoding, streaming and playing of multimedia files

Details

It was discovered that FFmpeg contained multiple security issues when handling
certain multimedia files. If a user were tricked into opening a crafted
multimedia file, an attacker could cause a denial of service via application
crash.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 19.04
Ubuntu 18.10
Ubuntu 18.04

In general, a standard system update will make all the necessary changes.

Related notices

  • USN-4431-1: libavcodec-ffmpeg56, libav-tools, libavcodec-dev, libavresample4, libavutil-ffmpeg54, libswscale-ffmpeg3, libavfilter7, libavfilter-ffmpeg5, libswscale-dev, libavfilter-extra7, ffmpeg, libavcodec58, libavdevice-dev, libavdevice-ffmpeg56, libavcodec-extra, libavdevice58, libavcodec-extra58, libavutil55, libavcodec-extra57, libswscale4, libavformat57, libavresample3, libavfilter-dev, libswscale5, libswresample2, libavdevice57, libavfilter-extra, libswresample-ffmpeg1, libswresample3, libpostproc55, libswresample-dev, libpostproc-dev, libavfilter6, libavformat-dev, libavutil56, libpostproc54, libavresample-dev, libavutil-dev, libavformat-ffmpeg56, libpostproc-ffmpeg53, libavresample-ffmpeg2, ffmpeg-doc, libavfilter-extra6, libavformat58, libavcodec-ffmpeg-extra56, libavcodec57