| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: libavutil60 | Distribution: openSUSE Tumbleweed |
| Version: 8.1.2 | Vendor: openSUSE |
| Release: 3.1 | Build date: Tue Sep 1 15:40:16 2026 |
| Group: System/Libraries | Build host: reproducible |
| Size: 1036388 | Source RPM: ffmpeg-8-8.1.2-3.1.src.rpm |
| Packager: https://bugs.opensuse.org | |
| Url: https://ffmpeg.org/ | |
| Summary: FFmpeg's utility library | |
The libavutil library is a utility library to aid portable multimedia programming. It contains safe portable string functions, random number generators, data structures, additional mathematics functions, cryptography and multimedia related functionality (like enumerations for pixel and sample formats).
GPL-3.0-or-later
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75147.patch:
Backport 983dae9c from upstream, avformat/rtpenc_av1: bound OBU
size in the keyframe search loop.
(CVE-2026-75147, bsc#1276413)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75146.patch:
Backport 65b0dab9 from upstream, avformat/dashdec: reject a negative
fragment index.
(CVE-2026-75146, bsc#1276412)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75145.patch:
Backport b4c199c5 from upstream, avformat/rtpenc_av1: do not narrow
the OBU size to (long).
(CVE-2026-75145, bsc#1276411)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75144.patch:
Backport 1c10bcc2 from upstream, avformat/rtpenc_vc2hq: reject data
units larger than the RTP payload buffer.
(CVE-2026-75144, bsc#1276410)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75143.patch:
Backport 1c10bcc2 from upstream, avformat/librist: honor the caller
buffer size in librist_read.
(CVE-2026-75143, bsc#1276409)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75142.patch:
Backport 9d786e4b from upstream, avformat/mpegenc: reject stream
counts that overflow the system header.
(CVE-2026-75142, bsc#1276408)
* Fri Aug 28 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-75141.patch:
Backport acf5d7cd from upstream, avformat/hevc: reject hvcC
NAL arrays that overflow the 16-bit count.
(CVE-2026-75141, bsc#1276407)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-70632.patch:
Backport 16b2049d from upstream, avcodec/cfhd: reject transform-2
output wider than the plane.
(CVE-2026-70632, bsc#1274289)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-70631.patch:
Backport 3c287af3 from upstream, avcodec/tiff: reject inflate
output shorter than the strip.
(CVE-2026-70631, bsc#1274287)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-70630.patch:
Backport c22667d0 from upstream, avcodec/screenpresso: reject
deflate output shorter than the frame.
(CVE-2026-70630, bsc#1274282)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-70629.patch:
Backport a5fe21a1 from upstream, avcodec/rscc: do not leave
uninitilized data when the input is too short.
(CVE-2026-70629, bsc#1274270)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-70628.patch:
Backport 02fc47e1 from upstream, avcodec/dvbsub_parser: avoid
signed overflow in the capacity check.
(CVE-2026-70628, bsc#1274268)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-66037.patch:
Backport f15e730c from upstream, avformat/iamf_parse: check
count_label against the available bytes.
(CVE-2026-66037, bsc#1272764)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-66036.patch:
Backport 62294b6a from upstream, avfilter/vf_hqdn3d: support
dynamic frame sizes.
(CVE-2026-66036, bsc#1272763)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-66036-shim01.patch
Backport e3d0c719 from upstream, avfilter/vf_hqdn3d: reject
unsupported frame parameter changes. This patch is for facilitate
ffmpeg-CVE-2026-66036.patch.
(CVE-2026-66036, bsc#1272763)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-65706.patch:
Backport b3c7ebc1 from upstream, avfilter/vf_swaprect: size the
temp row buffer for the widest plane.
(CVE-2026-65706, bsc#1272762)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-65705.patch:
Backport 30a52276 from upstream, avfilter/vf_floodfill: remove
unneeded variables.
(CVE-2026-65705, bsc#1272761)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-65704.patch:
Backport 52f7983f from upstream, avformat/ty: don't let the Series2
AC3 trim underflow the packet size.
(CVE-2026-65704, bsc#1272760)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-65703.patch:
Backport 3b85fbe8 from upstream, avcodec/tdsc: unref the reference
frame before reallocating on size change.
(CVE-2026-65703, bsc#1272759)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-64834.patch:
Backport 3c441711 from upstream, avformat/rtpdec_asf: reject ASF
objects smaller than their header.
(CVE-2026-64834, bsc#1272757)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-64833.patch:
Backport 385ac2fa from upstream, avformat/spdifenc: bound DTS
core_size against the packet size in the HD path.
(CVE-2026-64833, bsc#1272755)
* Fri Aug 14 2026 Cliff Zhao <qzhao@suse.com>
- Add ffmpeg-8-CVE-2026-58049.patch:
Backport f8d7795d from upstream, avcodec/rasc: Check that 32-bit
DLTA accesses stay within the row.
(CVE-2026-58049, bsc#1269550)
* Tue Aug 11 2026 Jan Engelhardt <jengelh@inai.de>
- Rename the ffmpeg BRPM back to ffmpeg-8 to make room for ffmpeg-9
to fill the role. [boo#1271606]
* Tue Jul 21 2026 Jan Engelhardt <jengelh@inai.de>
- Rename the ffmpeg-8 BRPM to ffmpeg. [boo#1271606]
* Wed Jun 17 2026 Jan Engelhardt <jengelh@inai.de>
- Update to release 8.1.2
* Fix some buffer overflows, integer overflows, negative
indices, off-by-one erros and double frees in various codecs,
muxers and filters.
* avcodec/magicyuv: Fix 1 line MEDIAN slices
avcodec/magicyuv: Expand the s->interlaced slice-height sanity check
avcodec/magicyuv: reject slice_height misaligned with chroma vshift
(CVE-2026-8461, bsc#1269490)
* Fri May 15 2026 Jan Engelhardt <jengelh@inai.de>
- Enable glslang filters
* Sat May 09 2026 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 8.1.1:
* Various codec, filter and other changes, stable bugfix update.
* avcodec/av1dec: check that primary_ref_frame is within range.
(CVE-2026-30997, bsc#1262047)
* avcodec/rasc: fix heap use-after-free in decode_move().
(CVE-2026-12706, bsc#1268595)
* Thu Apr 30 2026 Mia Herkt <mia@0x0.st>
- Switch back to OpenSSL
I do not remember why exactly this was changed, but I believe
one of the reasons was that back when EC certificates were new,
FFmpeg was only using the SSL 3.0/TLS 1.0 functions of the
library, which meant a security downgrade and prevented it from
connecting to hosts that restricted clients to newer protocol
versions.
Both libraries are kind of terrible, but at least OpenSSL does
not have a start function that unconditionally incurs significant
startup delays (200-300ms on an older laptop) for everything that
links to it.
* Thu Apr 16 2026 Jan Engelhardt <jengelh@inai.de>
- Add explicit symbol lists to work-around-abi-break.patch
[boo#1261836]
* Thu Apr 02 2026 Bjørn Lie <bjorn.lie@gmail.com>
- Disable VVC decoders/encoders by default.
* Mon Mar 16 2026 Jan Engelhardt <jengelh@inai.de>
- Update to release 8.1
* EXIF metadata parsing support
* Tue Jan 27 2026 Jan Engelhardt <jengelh@inai.de>
- Enable harfbuzz-based plugins [boo#1256873]
* Tue Jan 20 2026 Jan Engelhardt <jengelh@inai.de>
- Enable some more codecs based on package availability and
based on comparison with Fedora's ffmpeg package.
* Sat Jan 10 2026 Jan Engelhardt <jengelh@inai.de>
- Update to release 8.0.1
* avcodec/videotoolboxenc: fix the loss of precision when
calculating quality
* avcodec/videotoolboxenc: support global_quality without qscale
* avformat/http: Handle IPv6 Zone ID in hostname
* avfilter/af_whisper: fix broken output for multibyte character
* avfilter/f_ebur128: Fix incorrect ebur128 peak calculation
* swscale/graph: fix double-free when legacy pass fails
initializing
* avformat/dhav: Fix off by length of read element error
* avcodec/ffv1enc: Consider variation in slice sizes
* Sun Aug 24 2025 Jan Engelhardt <jengelh@inai.de>
- Derive from ffmpeg-7.spec
- Update to release 8.0
* New features:
* Native decoders (Packman builds): APV, ProRes RAW, RealVideo
6.0, Sanyo LD-ADPCM, G.728
* VVC decoder improvements: IBC, ACT, Palette Mode
* Vulkan compute-based codecs: FFv1 (encode and decode), ProRes
RAW (decode only)
* Hardware accelerated decoding: Vulkan VP9, VAAPI VVC,
OpenHarmony H264/5
* Hardware accelerated encoding: Vulkan AV1, OpenHarmony H264/5
* Filters: colordetect, pad_cuda, scale_d3d11, Whisper, and
others
* libavfilter/af_firequalizer: Add check for av_malloc_array()
(CVE-2025-10256, bsc#1249431)
* avcodec/jpeg2000dec: implement cdef remapping during pixel
format matching.
(CVE-2025-9951, bsc#1249393)
* aacenc_tns: clamp filter direction energy measurement
(CVE-2025-1594, bsc#1237561)
/usr/lib64/libavutil.so.60 /usr/lib64/libavutil.so.60.26.102 /usr/share/licenses/libavutil60 /usr/share/licenses/libavutil60/COPYING.GPLv2 /usr/share/licenses/libavutil60/LICENSE.md
Generated by rpm2html 1.8.1
Fabrice Bellet, Sun Sep 6 22:37:26 2026