Mail archive
alpine-aports

[alpine-aports] [PATCH v3.3] main/ffmpeg: security upgrade to 2.8.11 - fixes #6872

From: Sergei Lukin <sergej.lukin_at_gmail.com>
Date: Thu, 16 Feb 2017 12:35:07 +0000

CVE-2017-5024
CVE-2017-5025
CVE-2016-10190
CVE-2016-10191
CVE-2016-10192
CVE-2016-7502
CVE-2016-7785
CVE-2016-7905
CVE-2016-7562
CVE-2016-6164
CVE-2016-6881
CVE-2016-7122
CVE-2016-7450
CVE-2016-2213
CVE-2016-2328
CVE-2016-2329
CVE-2016-2330
---
changelog for 2.8.5 > 2.8.11:
https://abi-laboratory.pro/tracker/changelog/ffmpeg/2.8.11/log.html
 main/ffmpeg/APKBUILD | 29 +++++++++++++++++++++++++----
 1 file changed, 25 insertions(+), 4 deletions(-)
diff --git a/main/ffmpeg/APKBUILD b/main/ffmpeg/APKBUILD
index b132751..2ab5b6d 100644
--- a/main/ffmpeg/APKBUILD
+++ b/main/ffmpeg/APKBUILD
_at_@ -1,7 +1,8 @@
+# Contributor: Sergei Lukin <sergej.lukin_at_gmail.com>
 # Contributor: Ɓukasz Jendrysik <scadu_at_yandex.com>
 # Maintainer: Natanael Copa <ncopa_at_alpinelinux.org>
 pkgname=ffmpeg
-pkgver=2.8.5
+pkgver=2.8.11
 pkgrel=0
 pkgdesc="Complete and free Internet live audio and video broadcasting solution for Linux/Unix"
 url="http://ffmpeg.org/"
_at_@ -18,6 +19,26 @@ source="http://ffmpeg.org/releases/ffmpeg-$pkgver.tar.bz2
 	fix-flv-extradata.patch
 	"
 
+# secfixes:
+#   2.8.11-r0:
+#   - CVE-2017-5024
+#   - CVE-2017-5025
+#   - CVE-2016-10190
+#   - CVE-2016-10191
+#   - CVE-2016-10192
+#   - CVE-2016-7502
+#   - CVE-2016-7785
+#   - CVE-2016-7905
+#   - CVE-2016-7562
+#   - CVE-2016-6164
+#   - CVE-2016-6881
+#   - CVE-2016-7122
+#   - CVE-2016-7450
+#   - CVE-2016-2213
+#   - CVE-2016-2328
+#   - CVE-2016-2329
+#   - CVE-2016-2330
+
 _builddir="$srcdir"/$pkgname-$pkgver
 prepare() {
 	cd "$_builddir"
_at_@ -83,12 +104,12 @@ libs() {
 	mv "$pkgdir"/usr/lib "$subpkgdir"/usr
 }
 
-md5sums="989d9024313c2b7e2eeaed58b751c0ee  ffmpeg-2.8.5.tar.bz2
+md5sums="b08c5f76fe22cdd084dc77f46c96fe5f  ffmpeg-2.8.11.tar.bz2
 d041c60890392d80f74a567523f4c54d  configure-dlvsym.patch
 5f39e099cd7dfe71bb2f6b6615623d67  fix-flv-extradata.patch"
-sha256sums="3b6d9951533323ee64a21d0aa7667a780b3470bfe4e0fb7c1b33307ce290615a  ffmpeg-2.8.5.tar.bz2
+sha256sums="9987e0f6b1f66311390f807a0c18ad9c90652b5097cff17b3dcbeabdd89f8d32  ffmpeg-2.8.11.tar.bz2
 ffd6beadaea4cdbc1326fe396d8cd34b3efb791a865a32f64b3fe998b679c1d0  configure-dlvsym.patch
 8324bd3e154c151e64df36afd1edf05b8dc2dcd8e520208be0355a34b4209ad5  fix-flv-extradata.patch"
-sha512sums="2a46bef5ac99d114be7d3ece561ae71d09b87eaecba5da3c02ff1fe7e5cf4913e1b6feecca405540d1d70f9126591c209055edd7df1ad1d8bbf02f107701929e  ffmpeg-2.8.5.tar.bz2
+sha512sums="60749897dccde1ff2840be9679f6e10118c7313bbeb1b07bb36acf7f311010f484259df9a4a43e60373726de9d6b54675e1961cc7b40646107142f8f42ea1601  ffmpeg-2.8.11.tar.bz2
 d9bb652093b1c2d03cead78bcafd59fc8305f36fe5359ac5d7caf038889f1239829e288c07e77a11bbef89de5fe54a5eae50a1c4718ec77137bb677ef9069e54  configure-dlvsym.patch
 d4d369055ef9ec8742f971786b05b89a5748a32cee711f623b71e8aea54b004bebda4e618017a351162647360632b13bcc7f09059938734e692ec841fe769c46  fix-flv-extradata.patch"
-- 
2.6.6
---
Unsubscribe:  alpine-aports+unsubscribe_at_lists.alpinelinux.org
Help:         alpine-aports+help_at_lists.alpinelinux.org
---
Received on Thu Feb 16 2017 - 12:35:07 GMT