libvpx 1.14.0-1ubuntu2.1 source package in Ubuntu

Changelog

libvpx (1.14.0-1ubuntu2.1) noble-security; urgency=medium

  * SECURITY UPDATE: multiple integer overflows
    - debian/patches/CVE-2024-5197-pre1.patch: add test/vpx_image_test.cc.
    - debian/patches/CVE-2024-5197-1.patch: fix integer overflows in calc
      of stride_in_bytes in test/vpx_image_test.cc, vpx/src/vpx_image.c.
    - debian/patches/CVE-2024-5197-2.patch: avoid integer overflows in
      arithmetic operations in test/vpx_image_test.cc, vpx/src/vpx_image.c,
      vpx/vpx_image.h.
    - debian/patches/CVE-2024-5197-3.patch: fix a bug in alloc_size for
      high bit depths in vpx/src/vpx_image.c.
    - CVE-2024-5197

 -- Marc Deslauriers <email address hidden>  Wed, 05 Jun 2024 09:49:38 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Noble
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
video
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Noble updates main video
Noble security main video

Downloads

File Size SHA-256 Checksum
libvpx_1.14.0.orig.tar.xz 4.2 MiB 11150687870e4c94479abafe5d1ed38790e68dc7bbe08880fd5fb55138e4c6f3
libvpx_1.14.0-1ubuntu2.1.debian.tar.xz 16.7 KiB a0f649a7508e596a02abbd86415b4908170b9a67a507966d6d212433f822f1ed
libvpx_1.14.0-1ubuntu2.1.dsc 2.3 KiB 95a75911d144fca3feb6ccf421c1d086c20eddfd8a3bc3a5f7ac98b2a7dd826a

View changes file

Binary packages built by this source

libvpx-dev: VP8 and VP9 video codec (development files)

 VP8 and VP9 are open video codecs, originally developed by On2 and released
 as open source by Google Inc. They are the successor of the VP3 codec,
 on which the Theora codec was based.
 .
 This package contains the development libraries, header files needed by
 programs that want to compile with libvpx.

libvpx-doc: VP8 and VP9 video codec (API documentation)

 VP8 and VP9 are open video codecs, originally developed by On2 and released
 as open source by Google Inc. They are the successor of the VP3 codec,
 on which the Theora codec was based.
 .
 This package contains the HTML documentation for the libvpx library
 in /usr/share/doc/libvpx-doc.

libvpx9: VP8 and VP9 video codec (shared library)

 VP8 and VP9 are open video codecs, originally developed by On2 and released
 as open source by Google Inc. They are the successor of the VP3 codec,
 on which the Theora codec was based.
 .
 This package contains the shared libraries.

libvpx9-dbgsym: debug symbols for libvpx9
vpx-tools: VP8 and VP9 video codec encoding/decoding tools

 VP8 and VP9 are open video codecs, originally developed by On2 and released
 as open source by Google Inc. They are the successor of the VP3 codec,
 on which the Theora codec was based.
 .
 This package contains the commandline tools vpxdec and vpxenc.

vpx-tools-dbgsym: debug symbols for vpx-tools