Errata overview
Errata ID 176
Date 2018-08-15
Source package faad2
Fixed in version 2.8.0~cvs20161113-1+deb9u1
Description
This update addresses the following issues:
* Various issues were discovered in faad2, a fast audio decoder, that could
  cause a denial of service (large loop and CPU consumption) via a crafted
  mp4 file (CVE-2017-9218, CVE-2017-9219, CVE-2017-9220, CVE-2017-9221,
  CVE-2017-9222, CVE-2017-9223, CVE-2017-9253, CVE-2017-9254, CVE-2017-9255,
  CVE-2017-9256, CVE-2017-9257)
Additional notes
CVE ID CVE-2017-9218
CVE-2017-9219
CVE-2017-9220
CVE-2017-9221
CVE-2017-9222
CVE-2017-9223
CVE-2017-9253
CVE-2017-9254
CVE-2017-9255
CVE-2017-9256
CVE-2017-9257
UCS Bug number #47505