USN-5958-1: FFmpeg vulnerabilities
16 March 2023
Several security issues were fixed in FFmpeg.
Releases
Packages
- ffmpeg - Tools for transcoding, streaming and playing of multimedia files
Details
It was discovered that FFmpeg could be made to dereference a null
pointer. An attacker could possibly use this to cause a denial of
service via application crash. These issues only affected Ubuntu
16.04 ESM, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04
LTS. (CVE-2022-3109, CVE-2022-3341)
It was discovered that FFmpeg could be made to access an out-of-bounds
frame by the Apple RPZA encoder. An attacker could possibly use this
to cause a denial of service via application crash or access sensitive
information. This issue only affected Ubuntu 22.04 LTS and Ubuntu
22.10. (CVE-2022-3964)
It was discovered that FFmpeg could be made to access an out-of-bounds
frame by the QuickTime encoder. An attacker could possibly use this to
cause a denial of service via application crash or access sensitive
information. This issue only affected Ubuntu 22.10. (CVE-2022-3965)
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 22.10
-
ffmpeg
-
7:5.1.1-1ubuntu2.1
-
libavcodec-extra
-
7:5.1.1-1ubuntu2.1
-
libavcodec-extra59
-
7:5.1.1-1ubuntu2.1
-
libavcodec59
-
7:5.1.1-1ubuntu2.1
-
libavdevice59
-
7:5.1.1-1ubuntu2.1
-
libavfilter-extra
-
7:5.1.1-1ubuntu2.1
-
libavfilter-extra8
-
7:5.1.1-1ubuntu2.1
-
libavfilter8
-
7:5.1.1-1ubuntu2.1
-
libavformat-extra
-
7:5.1.1-1ubuntu2.1
-
libavformat-extra59
-
7:5.1.1-1ubuntu2.1
-
libavformat59
-
7:5.1.1-1ubuntu2.1
-
libavutil57
-
7:5.1.1-1ubuntu2.1
-
libpostproc56
-
7:5.1.1-1ubuntu2.1
-
libswresample4
-
7:5.1.1-1ubuntu2.1
-
libswscale6
-
7:5.1.1-1ubuntu2.1
Ubuntu 22.04
-
ffmpeg
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra58
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavcodec58
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavdevice58
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra7
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavfilter7
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavformat-extra
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavformat-extra58
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavformat58
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libavutil56
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libpostproc55
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libswresample3
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
-
libswscale5
-
7:4.4.2-0ubuntu0.22.04.1+esm1
Available with Ubuntu Pro
Ubuntu 20.04
-
ffmpeg
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra58
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec58
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavdevice58
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra7
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter7
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavformat58
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavresample4
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavutil56
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libpostproc55
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libswresample3
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libswscale5
-
7:4.2.7-0ubuntu0.1+esm1
Available with Ubuntu Pro
Ubuntu 18.04
-
ffmpeg
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec-extra57
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavcodec57
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavdevice57
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter-extra6
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavfilter6
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavformat57
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavresample3
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libavutil55
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libpostproc54
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libswresample2
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
-
libswscale4
-
7:3.4.11-0ubuntu0.1+esm1
Available with Ubuntu Pro
Ubuntu 16.04
-
ffmpeg
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libav-tools
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavcodec-extra
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavcodec-ffmpeg-extra56
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavcodec-ffmpeg56
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavdevice-ffmpeg56
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavfilter-ffmpeg5
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavformat-ffmpeg56
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavresample-ffmpeg2
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libavutil-ffmpeg54
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libpostproc-ffmpeg53
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libswresample-ffmpeg1
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
-
libswscale-ffmpeg3
-
7:2.8.17-0ubuntu0.1+esm5
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.