Summary
The remote host is missing updates announced in
advisory GLSA 200609-09.
Solution
All FFmpeg users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose
'>=media-video/ffmpeg-0.4.9_p20060530'
http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200609-09 http://bugs.gentoo.org/show_bug.cgi?id=133520
Insight
FFmpeg is vulnerable to multiple buffer overflows that might be exploited to execute arbitrary code.
Severity
Classification
-
CVE CVE-2006-4799, CVE-2006-4800 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities