Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcpc-jvcx-3fxc

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.

EPSS

Процентиль: 73%
0.00753
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 14 лет назад

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.

nvd
больше 14 лет назад

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.

debian
больше 14 лет назад

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPl ...

EPSS

Процентиль: 73%
0.00753
Низкий

Дефекты

CWE-20