Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-7937

Опубликовано: 21 янв. 2015
Источник: redhat
CVSS2: 6.8
EPSS Низкий

Описание

Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorbis I data.

Дополнительная информация

Статус:

Important
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1185217chromium-browser: use-after-free in FFmpeg

EPSS

Процентиль: 84%
0.02211
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
около 11 лет назад

Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorbis I data.

nvd
около 11 лет назад

Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorbis I data.

debian
около 11 лет назад

Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before ...

github
больше 3 лет назад

Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorbis I data.

EPSS

Процентиль: 84%
0.02211
Низкий

6.8 Medium

CVSS2