Skip to content
Commit ee99fe40 authored by Peter Korsgaard's avatar Peter Korsgaard
Browse files

gst1-plugins-bad: add upstream patch to fix security issue in vmnc decoder

As detailed by Chris Evans, the vmnc decoder contains an integer overflow which
can be exploited:

https://scarybeastsecurity.blogspot.be/2016/11/0day-poc-risky-design-decisions-in.html



Fixes CVE-2016-9445 and CVE-2016-9446.

Signed-off-by: default avatarPeter Korsgaard <peter@korsgaard.com>
parent e920e521
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment