-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 04 Aug 2020 16:10:03 +0200 Source: ffmpeg Architecture: source Version: 7:4.3.1-1 Distribution: unstable Urgency: high Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org> Changed-By: Jonas Smedegaard <dr@jones.dk> Closes: 964312 Changes: ffmpeg (7:4.3.1-1) unstable; urgency=high . [ upstream ] * new maintenance release + fix libavformat heap-based buffer overflow in avio_get_str (CVE-2020-14212) + fix libavformat use-after-free in hls (CVE-2020-13904) . [ Jonas Smedegaard ] * add patch cherry-picked upstream to avoid libswscale segfault on SSSE3 capable systems closes: bug#964312, thanks to Jörg Schütter * Document omitted features in README.Debian and TODO.Debian (not rules file comments) * use debhelper compatibility level 12 (not 13) * set urgency=high due to security-related bugfixes Checksums-Sha1: bb71db4394f9cf2fdec083da07f76b2fd8e6ff73 5413 ffmpeg_4.3.1-1.dsc 7fe9a4101acd90641f427f9e71bd89f1cf22b134 9379424 ffmpeg_4.3.1.orig.tar.xz 099da53693cbe861b49456269ecfae39147831d8 520 ffmpeg_4.3.1.orig.tar.xz.asc 8901bf56e2347a10948af479a137adb94c2c05f3 88928 ffmpeg_4.3.1-1.debian.tar.xz de808ae5416e95191c9bac5116d5e674ce90f44f 30795 ffmpeg_4.3.1-1_amd64.buildinfo Checksums-Sha256: 038352f7c975cb8d05fa56be90bc6a45442b40bedc7da0e805cbddd84200b937 5413 ffmpeg_4.3.1-1.dsc ad009240d46e307b4e03a213a0f49c11b650e445b1f8be0dda2a9212b34d2ffb 9379424 ffmpeg_4.3.1.orig.tar.xz e23034e1416aa5313978cdf9f1064c000e1b47660c6b9ff06250211ad5dda06b 520 ffmpeg_4.3.1.orig.tar.xz.asc ca67693836564e743db6b4c496d8372e7a6a26fda4e6af65f338440335bcd813 88928 ffmpeg_4.3.1-1.debian.tar.xz 65c6d76e9cd278b6e089ed0793ffcdf9ce62659f8dbec97a6e1ecd14a38c4ba4 30795 ffmpeg_4.3.1-1_amd64.buildinfo Files: e4f731839d6b581adfd0fc2cabeef513 5413 video optional ffmpeg_4.3.1-1.dsc 5d1956bb552e91dc3b8287db346d0d58 9379424 video optional ffmpeg_4.3.1.orig.tar.xz b92d7d23c4d1cb477057955de4fdd027 520 video optional ffmpeg_4.3.1.orig.tar.xz.asc 79b2c2e9283762ce70f376ec83289554 88928 video optional ffmpeg_4.3.1-1.debian.tar.xz 228e6a533df86cadace77b6766fe3dce 30795 video optional ffmpeg_4.3.1-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEn+Ppw2aRpp/1PMaELHwxRsGgASEFAl8peC0ACgkQLHwxRsGg ASHkEQ/+PJqtxn0Mh4K8rI2WNKvmFwc935G1f04RUBzneS4ECxKBMVis8e49Z2le etGlYwyRNkD/tdJIeMcSpHQ87KrdlpIG9bap1usJTZTP1moMBFfK6hLrD3St3OBO 3VVsKvBIQ0EUboshqUMujTVFwKUmoxxhPfh3C3MEn9Yl/RttdCPpmSBifNSF0icO TJ/GCsQpMTydRGyMKQnwIb0fNl/qtbeIRn0vmmiHFn/ZfIw7sxD0s8mIHmcry+pU LNSoQaYMnSAHSrYOxgdsaBN+Q3dkNcQUIQYs6/lGjFZesYumi6Pbqonr4qZutc6u h4h9cxtVDlFotGqYM6Ukkr+0AF2jb+yxqXjm/+jW05hMXlAjinxilpGsjmAYwFV0 DJ4l/8TfiNvL1fK5IkiIDbW3wPrkCWae02TKi0uB7FtjbdfrJEcfM+tfo2xmM4uX KTgG9D+B/Sb7wEIsSWE+uMiJNuN3xoqkZB1AOABhY+xonAFoEYyYpvo6TGam6dMy XANTz6GKqrbSXc6qBFBfRIIwiOiFbrQQ4W0E9muVHnTNFi0qYJ2rtQpJ5lyoXMDh kzGm7EYZ14K7jXShAcehA6cMLCbKlw+yQbD/j8SfNICny01oGqTJjsDOs5rEHR2j vQyeh7nWyNu9qOL8fxA8vybwg6L7wBJzgOLA6pko2BggjtHkSag= =hN/V -----END PGP SIGNATURE-----