Zero-Day FFmpeg Vulnerability Lets Anyone Steal Files from Remote Machines
Please read this: http://news.softpedia.com/news/zero-day ... 8880.shtml
How about porteus, It should also be affected by it. In SMPlayer I found the ffmpeg being used for mpeg files.
ffmpeg Exploit Zero-Day Vulnerability
Re: ffmpeg Exploit Zero-Day Vulnerability
thanks for the heads up. I use Nemesis and users will find an update replaces the vulnerable 2.8.4 version with 2.8.5
^^ either prefix pacman command with sudo if you login as guest or leave it alone
For normal Porteus users please check what usm has to say when you search it please.
Code: Select all
pacman -S ffmpeg
warning: ffmpeg-1:2.8.5-2 is up to date
For normal Porteus users please check what usm has to say when you search it please.
- francois
- Contributor
- Posts: 6435
- Joined: 28 Dec 2010, 14:25
- Distribution: xfce plank porteus nemesis
- Location: Le printemps, le printemps, le printemps... ... l'hiver s'essoufle.
Re: ffmpeg Exploit Zero-Day Vulnerability
As mentioned in the first post hyperlink: Please update to FFmpeg 2.8.5 .
Prendre son temps, profiter de celui qui passe.
Re: ffmpeg Exploit Zero-Day Vulnerability
I am using KDE on the 64bit, how to get the FFmpeg 2.8.5 package as xzm for loading it on every restart? as I am using the toram (non persistence) feature
regards
regards
-
- Full of knowledge
- Posts: 2564
- Joined: 25 Jun 2014, 15:21
- Distribution: 3.2.2 Cinnamon & KDE5
- Location: London
Re: ffmpeg Exploit Zero-Day Vulnerability
Copy to porteus/modules folder.
Linux porteus 4.4.0-porteus #3 SMP PREEMPT Sat Jan 23 07:01:55 UTC 2016 i686 AMD Sempron(tm) 140 Processor AuthenticAMD GNU/Linux
NVIDIA Corporation C61 [GeForce 6150SE nForce 430] (rev a2) MemTotal: 901760 kB MemFree: 66752 kB
NVIDIA Corporation C61 [GeForce 6150SE nForce 430] (rev a2) MemTotal: 901760 kB MemFree: 66752 kB