[FFmpeg-devel] [PATCH v4] Unbreak av_malloc_max(0) API/ABI

Moritz Barsnick barsnick at gmx.net
Fri Nov 6 16:05:48 EET 2020


On Wed, Nov 04, 2020 at 14:08:23 +0000, Joakim Tjernlund wrote:
> > No it doesn't. It forces them to upgrade away from a known vulnerable
> > old Chromium version to one that does not have the issue.
>
> I was referring to what is out/released now. Eventually all SW will upgrade for one reason or another.

Are you saying rolled out (or released) applications can update the
bundled ffmpeg (I guess libffmpeg which is part of Chromium) to include
this fix, but not update the bundled Chromium? Would updates not switch
to version 86 because 85 is discontinued?

Wondering,
Moritz


More information about the ffmpeg-devel mailing list