Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q79f-c6p6-2j9r

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.

EPSS

Процентиль: 70%
0.00623
Низкий

Связанные уязвимости

ubuntu
почти 13 лет назад

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.

nvd
почти 13 лет назад

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.

debian
почти 13 лет назад

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcod ...

EPSS

Процентиль: 70%
0.00623
Низкий