Описание
There exists a heap-based buffer overflow in vc1_decode_i_block_adv in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libav | removed | package | ||
| libav | not-affected | jessie | package |
Примечания
https://bugzilla.libav.org/show_bug.cgi?id=1135
EPSS
Процентиль: 48%
0.00252
Низкий
Связанные уязвимости
CVSS3: 6.5
ubuntu
больше 7 лет назад
There exists a heap-based buffer overflow in vc1_decode_i_block_adv in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.
CVSS3: 6.5
nvd
больше 7 лет назад
There exists a heap-based buffer overflow in vc1_decode_i_block_adv in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.
CVSS3: 6.5
github
больше 3 лет назад
There exists a heap-based buffer overflow in vc1_decode_i_block_adv in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.
EPSS
Процентиль: 48%
0.00252
Низкий