Opened 10 years ago

Closed 10 years ago

Last modified 10 years ago

#8406 closed enhancement (fixed)

libass-0.13.4 (CVE-2016-7972 CVE-2016-7970 CVE-2016-7969)

Reported by: bdubbs@… Owned by: bdubbs@…
Priority: high Milestone: 8.0
Component: BOOK Version: SVN
Severity: medium Keywords:
Cc:

Description (last modified by Douglas R. Reno)

New point version.

libass (0.13.4)
 * Bug fixes found with fuzzing
   * Fix memory reallocation in the shaper. (CVE-2016-7972)
   * Fix two small memory leaks in the parser and test program.
   * Fix illegal read in Gaussian blur coefficient calculations.
     (CVE-2016-7970)
   * Fix mode 0/3 line wrapping equalization in specific cases which could
     result in illegal reads while laying out and shaping text.
     (CVE-2016-7969)

Change History (4)

comment:1 by Douglas R. Reno, 10 years ago

Description: modified (diff)
Priority: normal → high
Summary: libass-0.13.4 → libass-0.13.4 (CVE-2016-7972 CVE-2016-7970 CVE-2016-7969)

comment:2 by bdubbs@…, 10 years ago

Owner: changed from blfs-book@… to bdubbs@…
Status: new → assigned

comment:3 by bdubbs@…, 10 years ago

Resolution: → fixed
Status: assigned → closed

Fixed at revision 17851.

comment:4 by bdubbs@…, 10 years ago

Milestone: 7.11 → 8.0

Milestone renamed

Note: See TracTickets for help on using tickets.