Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-30123

Опубликовано: 07 апр. 2021
Источник: debian
EPSS Низкий

Описание

FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ffmpegnot-affectedpackage

Примечания

  • https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=d6f293353c94c7ce200f6e0975ae3de49787f91f

  • https://trac.ffmpeg.org/ticket/8845

  • https://trac.ffmpeg.org/ticket/8863

  • CVE description is wrong, this landed in 4.4 only

  • Introduced in https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=9c0beaf0d3bb72f6e83b3b155a598a9ec28c8468

EPSS

Процентиль: 87%
0.03431
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 5 лет назад

FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.

CVSS3: 8.8
nvd
почти 5 лет назад

FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.

github
больше 3 лет назад

FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.

EPSS

Процентиль: 87%
0.03431
Низкий