Projects
Essentials
A_sr-ffmpeg-8
ffmpeg-8.changes
Sign Up
Log In
Username
Password
Overview
Repositories
Revisions
Requests
Users
Attributes
Meta
File ffmpeg-8.changes of Package A_sr-ffmpeg-8
------------------------------------------------------------------- Sat Sep 5 11:07:34 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Enable decoders in ffmpeg-8-mini that need no extra build dependencies. This makes it possible for some packages to run testsuites with e.g. WAV files. ------------------------------------------------------------------- Mon Aug 28 05:22:38 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75147.patch: Backport 983dae9c from upstream, avformat/rtpenc_av1: bound OBU size in the keyframe search loop. (CVE-2026-75147, bsc#1276413) ------------------------------------------------------------------- Mon Aug 28 04:47:54 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75146.patch: Backport 65b0dab9 from upstream, avformat/dashdec: reject a negative fragment index. (CVE-2026-75146, bsc#1276412) ------------------------------------------------------------------- Mon Aug 28 04:02:17 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75145.patch: Backport b4c199c5 from upstream, avformat/rtpenc_av1: do not narrow the OBU size to (long). (CVE-2026-75145, bsc#1276411) ------------------------------------------------------------------- Mon Aug 28 03:34:50 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75144.patch: Backport 1c10bcc2 from upstream, avformat/rtpenc_vc2hq: reject data units larger than the RTP payload buffer. (CVE-2026-75144, bsc#1276410) ------------------------------------------------------------------- Mon Aug 28 03:17:21 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75143.patch: Backport 1c10bcc2 from upstream, avformat/librist: honor the caller buffer size in librist_read. (CVE-2026-75143, bsc#1276409) ------------------------------------------------------------------- Mon Aug 28 02:58:12 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75142.patch: Backport 9d786e4b from upstream, avformat/mpegenc: reject stream counts that overflow the system header. (CVE-2026-75142, bsc#1276408) ------------------------------------------------------------------- Mon Aug 28 02:44:56 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-75141.patch: Backport acf5d7cd from upstream, avformat/hevc: reject hvcC NAL arrays that overflow the 16-bit count. (CVE-2026-75141, bsc#1276407) ------------------------------------------------------------------- Wed Aug 14 09:44:28 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-70632.patch: Backport 16b2049d from upstream, avcodec/cfhd: reject transform-2 output wider than the plane. (CVE-2026-70632, bsc#1274289) ------------------------------------------------------------------- Wed Aug 14 08:27:41 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-70631.patch: Backport 3c287af3 from upstream, avcodec/tiff: reject inflate output shorter than the strip. (CVE-2026-70631, bsc#1274287) ------------------------------------------------------------------- Wed Aug 14 07:58:24 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-70630.patch: Backport c22667d0 from upstream, avcodec/screenpresso: reject deflate output shorter than the frame. (CVE-2026-70630, bsc#1274282) ------------------------------------------------------------------- Wed Aug 14 07:22:18 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-70629.patch: Backport a5fe21a1 from upstream, avcodec/rscc: do not leave uninitilized data when the input is too short. (CVE-2026-70629, bsc#1274270) ------------------------------------------------------------------- Wed Aug 14 06:52:11 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-70628.patch: Backport 02fc47e1 from upstream, avcodec/dvbsub_parser: avoid signed overflow in the capacity check. (CVE-2026-70628, bsc#1274268) ------------------------------------------------------------------- Wed Aug 14 06:41:28 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-66037.patch: Backport f15e730c from upstream, avformat/iamf_parse: check count_label against the available bytes. (CVE-2026-66037, bsc#1272764) ------------------------------------------------------------------- Wed Aug 14 06:28:33 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-66036.patch: Backport 62294b6a from upstream, avfilter/vf_hqdn3d: support dynamic frame sizes. (CVE-2026-66036, bsc#1272763) ------------------------------------------------------------------- Wed Aug 14 05:51:42 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-66036-shim01.patch Backport e3d0c719 from upstream, avfilter/vf_hqdn3d: reject unsupported frame parameter changes. This patch is for facilitate ffmpeg-CVE-2026-66036.patch. (CVE-2026-66036, bsc#1272763) ------------------------------------------------------------------- Wed Aug 14 05:31:22 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-65706.patch: Backport b3c7ebc1 from upstream, avfilter/vf_swaprect: size the temp row buffer for the widest plane. (CVE-2026-65706, bsc#1272762) ------------------------------------------------------------------- Wed Aug 14 04:56:09 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-65705.patch: Backport 30a52276 from upstream, avfilter/vf_floodfill: remove unneeded variables. (CVE-2026-65705, bsc#1272761) ------------------------------------------------------------------- Wed Aug 14 04:31:19 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-65704.patch: Backport 52f7983f from upstream, avformat/ty: don't let the Series2 AC3 trim underflow the packet size. (CVE-2026-65704, bsc#1272760) ------------------------------------------------------------------- Wed Aug 14 04:02:11 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-65703.patch: Backport 3b85fbe8 from upstream, avcodec/tdsc: unref the reference frame before reallocating on size change. (CVE-2026-65703, bsc#1272759) ------------------------------------------------------------------- Wed Aug 14 03:46:28 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-64834.patch: Backport 3c441711 from upstream, avformat/rtpdec_asf: reject ASF objects smaller than their header. (CVE-2026-64834, bsc#1272757) ------------------------------------------------------------------- Wed Aug 14 03:33:14 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-64833.patch: Backport 385ac2fa from upstream, avformat/spdifenc: bound DTS core_size against the packet size in the HD path. (CVE-2026-64833, bsc#1272755) ------------------------------------------------------------------- Wed Aug 14 03:28:13 UTC 2026 - Cliff Zhao <qzhao@suse.com> - Add ffmpeg-8-CVE-2026-58049.patch: Backport f8d7795d from upstream, avcodec/rasc: Check that 32-bit DLTA accesses stay within the row. (CVE-2026-58049, bsc#1269550) ------------------------------------------------------------------- Tue Aug 11 10:43:34 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Rename the ffmpeg BRPM back to ffmpeg-8 to make room for ffmpeg-9 to fill the role. [boo#1271606] ------------------------------------------------------------------- Tue Jul 21 13:58:03 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Rename the ffmpeg-8 BRPM to ffmpeg. [boo#1271606] ------------------------------------------------------------------- Wed Jun 17 18:20:21 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Update to release 8.1.2 * Fix some buffer overflows, integer overflows, negative indices, off-by-one erros and double frees in various codecs, muxers and filters. * avcodec/magicyuv: Fix 1 line MEDIAN slices avcodec/magicyuv: Expand the s->interlaced slice-height sanity check avcodec/magicyuv: reject slice_height misaligned with chroma vshift (CVE-2026-8461, bsc#1269490) ------------------------------------------------------------------- Fri May 15 00:10:11 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Enable glslang filters ------------------------------------------------------------------- Sat May 9 09:36:25 UTC 2026 - Bjørn Lie <bjorn.lie@gmail.com> - Update to version 8.1.1: * Various codec, filter and other changes, stable bugfix update. * avcodec/av1dec: check that primary_ref_frame is within range. (CVE-2026-30997, bsc#1262047) * avcodec/rasc: fix heap use-after-free in decode_move(). (CVE-2026-12706, bsc#1268595) ------------------------------------------------------------------- Thu Apr 30 19:22:32 UTC 2026 - Mia Herkt <mia@0x0.st> - Switch back to OpenSSL I do not remember why exactly this was changed, but I believe one of the reasons was that back when EC certificates were new, FFmpeg was only using the SSL 3.0/TLS 1.0 functions of the library, which meant a security downgrade and prevented it from connecting to hosts that restricted clients to newer protocol versions. Both libraries are kind of terrible, but at least OpenSSL does not have a start function that unconditionally incurs significant startup delays (200-300ms on an older laptop) for everything that links to it. ------------------------------------------------------------------- Thu Apr 16 15:54:50 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Add explicit symbol lists to work-around-abi-break.patch [boo#1261836] ------------------------------------------------------------------- Thu Apr 2 08:54:44 UTC 2026 - Bjørn Lie <bjorn.lie@gmail.com> - Disable VVC decoders/encoders by default. ------------------------------------------------------------------- Mon Mar 16 22:36:37 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Update to release 8.1 * EXIF metadata parsing support ------------------------------------------------------------------- Tue Jan 27 00:01:04 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Enable harfbuzz-based plugins [boo#1256873] ------------------------------------------------------------------- Tue Jan 20 12:51:56 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Enable some more codecs based on package availability and based on comparison with Fedora's ffmpeg package. ------------------------------------------------------------------- Sat Jan 10 19:47:20 UTC 2026 - Jan Engelhardt <jengelh@inai.de> - Update to release 8.0.1 * avcodec/videotoolboxenc: fix the loss of precision when calculating quality * avcodec/videotoolboxenc: support global_quality without qscale * avformat/http: Handle IPv6 Zone ID in hostname * avfilter/af_whisper: fix broken output for multibyte character * avfilter/f_ebur128: Fix incorrect ebur128 peak calculation * swscale/graph: fix double-free when legacy pass fails initializing * avformat/dhav: Fix off by length of read element error * avcodec/ffv1enc: Consider variation in slice sizes ------------------------------------------------------------------- Sun Aug 24 07:09:43 UTC 2025 - Jan Engelhardt <jengelh@inai.de> - Derive from ffmpeg-7.spec - Update to release 8.0 * New features: * Native decoders (Packman builds): APV, ProRes RAW, RealVideo 6.0, Sanyo LD-ADPCM, G.728 * VVC decoder improvements: IBC, ACT, Palette Mode * Vulkan compute-based codecs: FFv1 (encode and decode), ProRes RAW (decode only) * Hardware accelerated decoding: Vulkan VP9, VAAPI VVC, OpenHarmony H264/5 * Hardware accelerated encoding: Vulkan AV1, OpenHarmony H264/5 * Filters: colordetect, pad_cuda, scale_d3d11, Whisper, and others * libavfilter/af_firequalizer: Add check for av_malloc_array() (CVE-2025-10256, bsc#1249431) * avcodec/jpeg2000dec: implement cdef remapping during pixel format matching. (CVE-2025-9951, bsc#1249393) * aacenc_tns: clamp filter direction energy measurement (CVE-2025-1594, bsc#1237561)
Locations
Projects
Search
Status Monitor
Help
Open Build Service
OBS Manuals
API Documentation
OBS Portal
Reporting a Bug
Contact
Mailing List
Forums
Chat (IRC)
Twitter
Open Build Service (OBS)
is an
openSUSE project
.