The update_dimensions function in libavcodec/vp8.c in FFmpeg through 2.8.1, as used in Google Chrome before 46.0.2490.71 and other products, relies on a coefficient-partition count during multi-threaded operation, which allows remote attackers to cause a denial of service (race condition and memory corruption) or possibly have unspecified other impact via a crafted WebM file.
{
"binaries": [
{
"binary_version": "47.0.2526.73-0ubuntu0.14.04.1.1106",
"binary_name": "chromium-browser"
},
{
"binary_version": "47.0.2526.73-0ubuntu0.14.04.1.1106",
"binary_name": "chromium-browser-l10n"
},
{
"binary_version": "47.0.2526.73-0ubuntu0.14.04.1.1106",
"binary_name": "chromium-chromedriver"
},
{
"binary_version": "47.0.2526.73-0ubuntu0.14.04.1.1106",
"binary_name": "chromium-codecs-ffmpeg"
},
{
"binary_version": "47.0.2526.73-0ubuntu0.14.04.1.1106",
"binary_name": "chromium-codecs-ffmpeg-extra"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "liboxideqt-qmlplugin"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "liboxideqtcore0"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "liboxideqtquick0"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "oxideqmlscene"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "oxideqt-chromedriver"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "oxideqt-codecs"
},
{
"binary_version": "1.10.3-0ubuntu0.14.04.1",
"binary_name": "oxideqt-codecs-extra"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libav-tools"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavcodec-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavcodec-extra"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavcodec-extra-54"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavcodec54"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavdevice-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavdevice-extra-53"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavdevice53"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavfilter-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavfilter-extra-3"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavfilter3"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavformat-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavformat-extra-54"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavformat54"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavresample-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavresample1"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavutil-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavutil-extra-52"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libavutil52"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libswscale-dev"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libswscale-extra-2"
},
{
"binary_version": "6:9.20-0ubuntu0.14.04.1+esm1",
"binary_name": "libswscale2"
}
]
}
{
"binaries": [
{
"binary_version": "47.0.2526.73-0ubuntu1.1218",
"binary_name": "chromium-browser"
},
{
"binary_version": "47.0.2526.73-0ubuntu1.1218",
"binary_name": "chromium-browser-l10n"
},
{
"binary_version": "47.0.2526.73-0ubuntu1.1218",
"binary_name": "chromium-chromedriver"
},
{
"binary_version": "47.0.2526.73-0ubuntu1.1218",
"binary_name": "chromium-codecs-ffmpeg"
},
{
"binary_version": "47.0.2526.73-0ubuntu1.1218",
"binary_name": "chromium-codecs-ffmpeg-extra"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "liboxideqt-qmlplugin"
},
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "liboxideqtcore0"
},
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "liboxideqtquick0"
},
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "oxideqt-chromedriver"
},
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "oxideqt-codecs"
},
{
"binary_version": "1.10.3-0ubuntu0.15.10.1",
"binary_name": "oxideqt-codecs-extra"
}
],
"availability": "No subscription required"
}