Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-9608

Опубликовано: 27 дек. 2017
Источник: debian
EPSS Низкий

Описание

The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted mov file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ffmpegfixed7:3.3.3-1package

Примечания

  • https://www.openwall.com/lists/oss-security/2017/08/14/1

  • https://github.com/FFmpeg/FFmpeg/commit/611b35627488a8d0763e75c25ee0875c5b7987dd

  • https://github.com/FFmpeg/FFmpeg/commit/0a709e2a10b8288a0cc383547924ecfe285cef89

EPSS

Процентиль: 92%
0.08942
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 8 лет назад

The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted mov file.

CVSS3: 6.5
nvd
около 8 лет назад

The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted mov file.

CVSS3: 6.5
github
больше 3 лет назад

The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted mov file.

EPSS

Процентиль: 92%
0.08942
Низкий