Debian Security Advisory

DSA-4012-1 libav -- security update

Date Reported:
31 Oct 2017
Affected Packages:
libav
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2015-8365, CVE-2017-7208, CVE-2017-7862, CVE-2017-9992.
More information:

Several security issues have been corrected in multiple demuxers and decoders of the libav multimedia library. A full list of the changes is available at https://git.libav.org/?p=libav.git;a=blob;f=Changelog;hb=refs/tags/v11.11

For the oldstable distribution (jessie), these problems have been fixed in version 6:11.11-1~deb8u1.

We recommend that you upgrade your libav packages.