-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 29 Jan 2025 22:03:02 +0100 Source: ffmpeg Architecture: source Version: 7:4.3.8-0+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: Debian Multimedia Maintainers <debian-multimedia@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Changes: ffmpeg (7:4.3.8-0+deb11u2) bullseye-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2024-36618 Fix integer overflow if ULONG_MAX < INT64_MAX * CVE-2024-35368 Fix double-free on error * CVE-2024-35367 Fix out-of-bounds access Checksums-Sha1: 7ee13c0a349e5467ec669761e76b7318a93dff7d 5598 ffmpeg_4.3.8-0+deb11u2.dsc aa8393a0884ca8f31990eb49bc4ef431f161a824 9408540 ffmpeg_4.3.8.orig.tar.xz 4968bb9a328dcc55a7a8bac2c6d156dae8efffc5 520 ffmpeg_4.3.8.orig.tar.xz.asc 0db7eed52f908cbcb7836a913fd3b230a02bc161 92692 ffmpeg_4.3.8-0+deb11u2.debian.tar.xz 5eea53a5985e976e2cfc07f081af1e819f0caa07 11227 ffmpeg_4.3.8-0+deb11u2_source.buildinfo Checksums-Sha256: e66ff14781591715cfe469ec79d75ce334db0b511c1b5b28c99c7aebbebea868 5598 ffmpeg_4.3.8-0+deb11u2.dsc 103fd01f78c596c4c974ddf180dabaf149a86d234988895a0e566a5ff4afa444 9408540 ffmpeg_4.3.8.orig.tar.xz eea561b9783180aee595fc26204cde6b504b1d8611fec745f76c87dae45514b7 520 ffmpeg_4.3.8.orig.tar.xz.asc b275b83b89c0295839f72c441482584edd9dc572c3e3ad59fe0a0479312217b9 92692 ffmpeg_4.3.8-0+deb11u2.debian.tar.xz f477f52c049f63493b90647c1892674d4bb54104c72d50d2f666215e655e8331 11227 ffmpeg_4.3.8-0+deb11u2_source.buildinfo Files: e20a477061357a542219025f382848ad 5598 video optional ffmpeg_4.3.8-0+deb11u2.dsc 972daa21affad280e534574e9c0656a2 9408540 video optional ffmpeg_4.3.8.orig.tar.xz 2aa267d0ae0e9204e8d581c7be5e368f 520 video optional ffmpeg_4.3.8.orig.tar.xz.asc c9275e2baf53cbc5704100176dda6501 92692 video optional ffmpeg_4.3.8-0+deb11u2.debian.tar.xz e27aafb4a00a9d33ef2175bfeab1cf63 11227 video optional ffmpeg_4.3.8-0+deb11u2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmecr7hfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR13hD/wJTs9yei/Ba9ldCSL9K4ikJehH/nve fP1ZvYY8F+2XFlmGhB8Y80MDVhFRphn3zuGNcD/ZPDRKY+kRTlntNBJMCxyKYKdk etZcVwdynvvapqNl8bI24Y5QDBIu+TQwUKdINkJD+83DIOS4eB/LdLf3grQkrmBb qKzFb7EnQzZwDxp8lUQaKMNhv6beb4mS8fpXajuZvSx8tZoKFuYzMlE5AZTbXaiQ 88kP4aKT7eJCp14GjlLo5OC3bAxwe/DORgxxSpDi7asOGJhpqw9o5Iv3zCa3TNpD utfMkamk67lK098kDayehD75VF1SZtYiw2d23UTt0s4KnVct/teFuf/CqLHxs41X lvH8d+wAYx+UDb5aMaMERG0Hf1HeinlgyYPSQgYWSP3wEYjG3gkyS4HUjNTAREwv Zv9Z8O59sQbszIudJeydgNTkNjPvzVl0ZFmfj5M9iVJAFhel9jfqUQc7QEPHmo37 TMolLCunjqikz+yPycc6eFmzisChylExpNF6OocEbttxMqRuvVdZkddBF0ZNpPIE lpbu69mCjp2xjuG8QLluto8TCGnHUwnbjJUu60cS8zLBkobJOU93J/4peyXHUIoe y6532BH40rvImNDIBDWj8PB3cvIlF4CCoyb0QrlokH3kdmQDPNJzXQ3LqmnLjS8s KmpCURbhUcvwTw== =8ywl -----END PGP SIGNATURE-----