Alpine Linux Affected

Updated:  January 20, 2016

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

We are not aware of further vendor information regarding this vulnerability.

Vendor References

Apple Unknown

Notified:  January 20, 2016 Updated: January 20, 2016

Status

Unknown

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor References

    Arch Linux Affected

    Notified:  January 20, 2016 Updated: January 20, 2016

    Status

    Affected

    Vendor Statement

    No statement is currently available from the vendor regarding this vulnerability.

    Vendor Information

    We are not aware of further vendor information regarding this vulnerability.

    Vendor References

    CentOS Not Affected

    Notified:  January 20, 2016 Updated: January 21, 2016

    Statement Date:   January 21, 2016

    Status

    Not Affected

    Vendor Statement

    No statement is currently available from the vendor regarding this vulnerability.

    Addendum

    Red Hat ships only qffmpeg, which is a stripped-down fork of ffmpeg that is not vulnerable.

    CoreOS Unknown

    Notified:  January 20, 2016 Updated: January 20, 2016

    Status

    Unknown

    Vendor Statement

    No statement is currently available from the vendor regarding this vulnerability.

    Vendor References

      Debian GNU/Linux Affected

      Notified:  January 20, 2016 Updated: January 20, 2016

      Status

      Affected

      Vendor Statement

      No statement is currently available from the vendor regarding this vulnerability.

      Vendor Information

      We are not aware of further vendor information regarding this vulnerability.

      Vendor References

      DesktopBSD Unknown

      Notified:  January 20, 2016 Updated: January 20, 2016

      Status

      Unknown

      Vendor Statement

      No statement is currently available from the vendor regarding this vulnerability.

      Vendor References

        DragonFly BSD Project Unknown

        Notified:  January 20, 2016 Updated: January 20, 2016

        Status

        Unknown

        Vendor Statement

        No statement is currently available from the vendor regarding this vulnerability.

        Vendor References

          EMC Corporation Unknown

          Notified:  January 20, 2016 Updated: January 20, 2016

          Status

          Unknown

          Vendor Statement

          No statement is currently available from the vendor regarding this vulnerability.

          Vendor References

            F5 Networks, Inc. Unknown

            Notified:  January 20, 2016 Updated: January 20, 2016

            Status

            Unknown

            Vendor Statement

            No statement is currently available from the vendor regarding this vulnerability.

            Vendor References

              Fedora Project Unknown

              Notified:  January 20, 2016 Updated: January 20, 2016

              Status

              Unknown

              Vendor Statement

              No statement is currently available from the vendor regarding this vulnerability.

              Vendor References

                ffmpeg Affected

                Updated:  January 20, 2016

                Status

                Affected

                Vendor Statement

                No statement is currently available from the vendor regarding this vulnerability.

                Vendor Information

                We are not aware of further vendor information regarding this vulnerability.

                Vendor References

                FreeBSD Project Unknown

                Notified:  January 20, 2016 Updated: January 20, 2016

                Status

                Unknown

                Vendor Statement

                No statement is currently available from the vendor regarding this vulnerability.

                Vendor References

                  Gentoo Linux Affected

                  Notified:  January 20, 2016 Updated: January 20, 2016

                  Status

                  Affected

                  Vendor Statement

                  No statement is currently available from the vendor regarding this vulnerability.

                  Vendor Information

                  We are not aware of further vendor information regarding this vulnerability.

                  Hardened BSD Unknown

                  Notified:  January 20, 2016 Updated: January 20, 2016

                  Status

                  Unknown

                  Vendor Statement

                  No statement is currently available from the vendor regarding this vulnerability.

                  Vendor References

                    Hewlett Packard Enterprise Unknown

                    Notified:  January 20, 2016 Updated: January 20, 2016

                    Status

                    Unknown

                    Vendor Statement

                    No statement is currently available from the vendor regarding this vulnerability.

                    Vendor References

                      Hitachi Unknown

                      Notified:  January 20, 2016 Updated: January 20, 2016

                      Status

                      Unknown

                      Vendor Statement

                      No statement is currently available from the vendor regarding this vulnerability.

                      Vendor References

                        IBM Corporation Unknown

                        Notified:  January 20, 2016 Updated: January 20, 2016

                        Status

                        Unknown

                        Vendor Statement

                        No statement is currently available from the vendor regarding this vulnerability.

                        Vendor References

                          IBM eServer Unknown

                          Notified:  January 20, 2016 Updated: January 20, 2016

                          Status

                          Unknown

                          Vendor Statement

                          No statement is currently available from the vendor regarding this vulnerability.

                          Vendor References

                            Juniper Networks Unknown

                            Notified:  January 20, 2016 Updated: January 20, 2016

                            Status

                            Unknown

                            Vendor Statement

                            No statement is currently available from the vendor regarding this vulnerability.

                            Vendor References

                              Libav Affected

                              Updated:  January 20, 2016

                              Status

                              Affected

                              Vendor Statement

                              No statement is currently available from the vendor regarding this vulnerability.

                              Vendor Information

                              We are not aware of further vendor information regarding this vulnerability.

                              m0n0wall Unknown

                              Notified:  January 20, 2016 Updated: January 20, 2016

                              Status

                              Unknown

                              Vendor Statement

                              No statement is currently available from the vendor regarding this vulnerability.

                              Vendor References

                                Microsoft Corporation Not Affected

                                Notified:  January 20, 2016 Updated: March 10, 2016

                                Statement Date:   March 10, 2016

                                Status

                                Not Affected

                                Vendor Statement

                                No statement is currently available from the vendor regarding this vulnerability.

                                Vendor Information

                                We are not aware of further vendor information regarding this vulnerability.

                                NEC Corporation Unknown

                                Notified:  January 20, 2016 Updated: January 20, 2016

                                Status

                                Unknown

                                Vendor Statement

                                No statement is currently available from the vendor regarding this vulnerability.

                                Vendor References

                                  NetBSD Unknown

                                  Notified:  January 20, 2016 Updated: January 20, 2016

                                  Status

                                  Unknown

                                  Vendor Statement

                                  No statement is currently available from the vendor regarding this vulnerability.

                                  Vendor References

                                    Nokia Unknown

                                    Notified:  January 20, 2016 Updated: January 20, 2016

                                    Status

                                    Unknown

                                    Vendor Statement

                                    No statement is currently available from the vendor regarding this vulnerability.

                                    Vendor References

                                      OmniTI Not Affected

                                      Notified:  January 20, 2016 Updated: January 20, 2016

                                      Statement Date:   January 20, 2016

                                      Status

                                      Not Affected

                                      Vendor Statement

                                      No statement is currently available from the vendor regarding this vulnerability.

                                      Vendor Information

                                      Neither of these (ffmpeg or libav) are in OmniOS. They may be in unsupported 3rd-party packages, but they are not in OmniOS itself.

                                      openSUSE project Unknown

                                      Notified:  January 20, 2016 Updated: January 20, 2016

                                      Status

                                      Unknown

                                      Vendor Statement

                                      No statement is currently available from the vendor regarding this vulnerability.

                                      Vendor References

                                        Openwall GNU/*/Linux Unknown

                                        Notified:  January 20, 2016 Updated: January 20, 2016

                                        Status

                                        Unknown

                                        Vendor Statement

                                        No statement is currently available from the vendor regarding this vulnerability.

                                        Vendor References

                                          Oracle Corporation Unknown

                                          Notified:  January 20, 2016 Updated: January 20, 2016

                                          Status

                                          Unknown

                                          Vendor Statement

                                          No statement is currently available from the vendor regarding this vulnerability.

                                          Vendor References

                                            PC-BSD Unknown

                                            Notified:  January 20, 2016 Updated: January 20, 2016

                                            Status

                                            Unknown

                                            Vendor Statement

                                            No statement is currently available from the vendor regarding this vulnerability.

                                            Vendor References

                                              QNX Software Systems Inc. Unknown

                                              Notified:  January 20, 2016 Updated: January 20, 2016

                                              Status

                                              Unknown

                                              Vendor Statement

                                              No statement is currently available from the vendor regarding this vulnerability.

                                              Vendor References

                                                Red Hat, Inc. Not Affected

                                                Notified:  January 20, 2016 Updated: January 21, 2016

                                                Statement Date:   January 21, 2016

                                                Status

                                                Not Affected

                                                Vendor Statement

                                                No statement is currently available from the vendor regarding this vulnerability.

                                                Addendum

                                                Red Hat ships only qffmpeg, which is a stripped-down fork of ffmpeg that is not vulnerable.

                                                Slackware Linux Inc. Unknown

                                                Notified:  January 20, 2016 Updated: January 21, 2016

                                                Status

                                                Unknown

                                                Vendor Statement

                                                No statement is currently available from the vendor regarding this vulnerability.

                                                Vendor Information

                                                We are not aware of further vendor information regarding this vulnerability.

                                                Sony Corporation Unknown

                                                Notified:  January 20, 2016 Updated: January 20, 2016

                                                Status

                                                Unknown

                                                Vendor Statement

                                                No statement is currently available from the vendor regarding this vulnerability.

                                                Vendor References

                                                  SUSE Linux Affected

                                                  Notified:  January 20, 2016 Updated: January 20, 2016

                                                  Status

                                                  Affected

                                                  Vendor Statement

                                                  No statement is currently available from the vendor regarding this vulnerability.

                                                  Vendor Information

                                                  We are not aware of further vendor information regarding this vulnerability.

                                                  Vendor References

                                                  Turbolinux Unknown

                                                  Notified:  January 20, 2016 Updated: January 20, 2016

                                                  Status

                                                  Unknown

                                                  Vendor Statement

                                                  No statement is currently available from the vendor regarding this vulnerability.

                                                  Vendor References

                                                    Ubuntu Affected

                                                    Notified:  January 20, 2016 Updated: January 20, 2016

                                                    Statement Date:   January 20, 2016

                                                    Status

                                                    Affected

                                                    Vendor Statement

                                                    No statement is currently available from the vendor regarding this vulnerability.

                                                    Vendor Information

                                                    We've sponsored updates for Ubuntu 15.04 (ffmpeg 7:2.5.10-0ubuntu0.15.04.1) and Ubuntu 15.10 (ffmpeg 7:2.7.5-0ubuntu0.15.10.1).

                                                    Vendor References

                                                    Unisys Unknown

                                                    Notified:  January 20, 2016 Updated: January 20, 2016

                                                    Status

                                                    Unknown

                                                    Vendor Statement

                                                    No statement is currently available from the vendor regarding this vulnerability.

                                                    Vendor References

                                                      VideoLAN Affected

                                                      Updated:  January 21, 2016

                                                      Status

                                                      Affected

                                                      Vendor Statement

                                                      No statement is currently available from the vendor regarding this vulnerability.

                                                      Vendor Information

                                                      We are not aware of further vendor information regarding this vulnerability.

                                                      Vendor References

                                                      View all 40 vendors View less vendors