Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r484-3cf9-6334

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.3

Описание

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .mov file.

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .mov file.

EPSS

Процентиль: 71%
0.00683
Низкий

8.3 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.3
ubuntu
около 10 лет назад

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .mov file.

CVSS3: 8.3
nvd
около 10 лет назад

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .mov file.

CVSS3: 8.3
debian
около 10 лет назад

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8. ...

fstec
около 10 лет назад

Уязвимость мультимедийной библиотеки FFmpeg, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

suse-cvrf
около 10 лет назад

Security update for ffmpeg

EPSS

Процентиль: 71%
0.00683
Низкий

8.3 High

CVSS3

Дефекты

CWE-119