Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rc8x-xc8r-ghw3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write.

The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write.

EPSS

Процентиль: 74%
0.0085
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
около 12 лет назад

The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write.

nvd
около 12 лет назад

The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write.

debian
около 12 лет назад

The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg befor ...

EPSS

Процентиль: 74%
0.0085
Низкий

Дефекты

CWE-119