Fixes CVE_2023-5217: Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. https://www.openwall.com/lists/oss-security/2023/09/28/5 Signed-off-by: Bernd Kuhls <bernd@kuhls.net> [Peter: extend commit message, add _IGNORE_CVES] Signed-off-by: Peter Korsgaard <peter@korsgaard.com> |
||
---|---|---|
.. | ||
0001-vpx_mem-vpx_mem.h-Fix-compilation-with-uClibc.patch | ||
0002-VP8-disallow-thread-count-changes.patch | ||
Config.in | ||
libvpx.hash | ||
libvpx.mk |