Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 893942

Summary: media-libs/libde265-1.0.9 Buffer overflow
Product: Gentoo Linux Reporter: Attila Tóth <atoth>
Component: Current packagesAssignee: Gentoo Linux bug wranglers <bug-wranglers>
Status: RESOLVED DUPLICATE    
Severity: normal CC: jstein
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://github.com/advisories/GHSA-m9c9-fqf4-w6xr
Whiteboard:
Package list:
Runtime testing required: ---

Description Attila Tóth 2023-02-11 11:50:50 UTC
Stack buffer overflow possibility in media-libs/libde265-1.0.9.
Corrected in libd265-1.0.10. The latest version is libde265-1.0.11 upstreams. A version bump would take care of this.
https://github.com/strukturag/libde265/issues/367
https://github.com/strukturag/libde265/pull/376
https://security-tracker.debian.org/tracker/CVE-2022-47655
The NVD page is unaccessible.

Reproducible: Always
Comment 1 Jonas Stein gentoo-dev 2023-02-11 12:40:37 UTC

*** This bug has been marked as a duplicate of bug 889876 ***