Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15672

Опубликовано: 06 нояб. 2017
Источник: debian
EPSS Низкий

Описание

The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unspecified impact via a crafted MP4 file, which triggers an out-of-bounds read.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ffmpegfixed7:3.4-1package
libavremovedpackage

Примечания

  • Fixed by: https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=c20f4fcb74da2d0432c7b54499bb98f48236b904

EPSS

Процентиль: 79%
0.02
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 9 лет назад

The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unspecified impact via a crafted MP4 file, which triggers an out-of-bounds read.

CVSS3: 8.8
nvd
почти 9 лет назад

The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unspecified impact via a crafted MP4 file, which triggers an out-of-bounds read.

CVSS3: 8.8
github
больше 4 лет назад

The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unspecified impact via a crafted MP4 file, which triggers an out-of-bounds read.

EPSS

Процентиль: 79%
0.02
Низкий