Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-14225

Опубликовано: 09 сент. 2017
Источник: nvd
CVSS3: 8.8
CVSS2: 6.8
EPSS Низкий

Описание

The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg 3.3.3 may return a NULL pointer depending on a value contained in a file, but callers do not anticipate this, as demonstrated by the avcodec_string function in libavcodec/utils.c, leading to a NULL pointer dereference. (It is also conceivable that there is security relevance for a NULL pointer dereference in av_color_primaries_name calls within the ffprobe command-line program.)

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ffmpeg:ffmpeg:3.3.3:*:*:*:*:*:*:*

EPSS

Процентиль: 59%
0.0038
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 8 лет назад

The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg 3.3.3 may return a NULL pointer depending on a value contained in a file, but callers do not anticipate this, as demonstrated by the avcodec_string function in libavcodec/utils.c, leading to a NULL pointer dereference. (It is also conceivable that there is security relevance for a NULL pointer dereference in av_color_primaries_name calls within the ffprobe command-line program.)

CVSS3: 8.8
debian
почти 8 лет назад

The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg ...

CVSS3: 8.8
github
больше 3 лет назад

The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg 3.3.3 may return a NULL pointer depending on a value contained in a file, but callers do not anticipate this, as demonstrated by the avcodec_string function in libavcodec/utils.c, leading to a NULL pointer dereference. (It is also conceivable that there is security relevance for a NULL pointer dereference in av_color_primaries_name calls within the ffprobe command-line program.)

suse-cvrf
почти 8 лет назад

Security update for ffmpeg, ffmpeg2

suse-cvrf
почти 8 лет назад

Security update for ffmpeg, ffmpeg2

EPSS

Процентиль: 59%
0.0038
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-476