USN-630-1: ffmpeg vulnerability
28 July 2008
ffmpeg vulnerability
Releases
Packages
- ffmpeg -
Details
It was discovered that ffmpeg did not correctly handle STR file
demuxing. If a user were tricked into processing a malicious STR file,
a remote attacker could execute arbitrary code with user privileges via
applications linked against ffmpeg.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 8.04
Ubuntu 7.10
In general, a standard system upgrade is sufficient to effect the
necessary changes.