Index: security/vuxml/vuln.xml =================================================================== --- security/vuxml/vuln.xml (revision 455038) +++ security/vuxml/vuln.xml (working copy) @@ -58,6 +58,40 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + ffmpeg -- multiple vulnerabilities + + + ffmpeg + 3.4 + + + + +

MITRE reports:

+
+

Multiple vulnerabilities have been found in FFmpeg. Please refer + to CVE list for details.

+

Note: CVE-2017-15186 and CVE-2017-15672 do not affect ffpmeg-3.3.5 + currently in 2017Q4 branch.

+
+ +
+ + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15186 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15672 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16840 + http://ffmpeg.org/security.html + CVE-2017-15186 + CVE-2017-15672 + CVE-2017-16840 + + + 2017-10-09 + 2017-11-28 + +
+ exim -- remote code execution, deny of service in BDAT