Описание
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| ffmpeg | fixed | 7:4.4-5 | package | |
| ffmpeg | postponed | stretch | package |
Примечания
https://trac.ffmpeg.org/ticket/8188
http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=cfce16449cb815132f829d5a07beb138dfb2cba6 (4.4)
http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=010281ed230454042abf8b88696678c669a0f279 (4.1.9)
Связанные уязвимости
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.
Уязвимость функции mpeg_mux_write_packet компонента libavformat/mpegenc.c мультимедийной библиотеки FFmpeg, позволяющая нарушителю вызвать отказ в обслуживании