[SRU] New upstream bugfix releases 4.2.9, 4.4.4 and 5.1.3
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
ffmpeg (Ubuntu) |
Invalid
|
Undecided
|
Unassigned |
Bug Description
[Impact]
New upstream bugfix releases 4.2.9, 4.4.4 and 5.1.3 are available.
These releases fix:
* CVE-2022-48434 in Ubuntu 22.04 and
* CVE-2022-3964, CVE-2022-3965 and CVE-2022-4907 in Ubuntu 23.04 and
* many other bugs.
[Test Plan]
For each Ubuntu release being updated and each architecture of amd64, arm64, and other architectures that can be tested, run the following commands in a chroot, container or VM of that Ubuntu release and architecture:
[Download the .dsc file for the update]
$ sudo apt install build-essential
$ dpkg-source -x $SOURCE_DSC
$ cd ffmpeg-
$ debuild -us -uc
[If required, install build dependencies and repeat the command]
$ export LD_LIBRARY_
$ cd debian/standard
$ make fate-rsync SAMPLES=fate-suite/
$ make fate -k SAMPLES=fate-suite/
[Where problems could occur]
The bug fixes in this update could create regressions in other packages in the Ubuntu archive or in third-party software.
CVE References
Changed in ffmpeg (Ubuntu): | |
assignee: | nobody → Luís Infante da Câmara (luis220413) |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
Changed in ffmpeg (Ubuntu): | |
status: | Incomplete → New |
description: | updated |
Most of the CVEs are already fixed under Pro. Also there are no testing instructions.