severity 403398 important set 403398 -security thanks Sam Hocevar ha scritto: > > I'm investigating #403398
hi I investigated this issue, and it is (quite likely) not a security one; the crash is of this form: when a I-frame, or an header, is damaged, then mplayer does not allocate memory for motion-compensation and other B-frame stuff, and so it crashes ; at the same time, though, mplayer/ffmpeg is careful that non allocated memory pointers are NULL, so it indeed crashes, but those are really not security problem I discussed (privately), with Moritz, who tonight said: > Ok, in that case they're not release-critical security bugs, but just > regular (severity normal) bugs. We wouldn't issue a DSA neither if Etch were > already released. > > (Feel free to quote me on that for the RMs, I'm away until thursday.) so, here we go ---- anyway, I have patches for that ... you may want to use interdiff to highlight those a.
signature.asc
Description: OpenPGP digital signature