Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-4048

Опубликовано: 07 дек. 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.

РелизСтатусПримечание
dapper

released

3:0.cvs20050918-5ubuntu1.2
devel

not-affected

edgy

released

0.cvs20060823-3.1ubuntu1
feisty

released

0.cvs20060823-3.1ubuntu1
gutsy

released

0.cvs20060823-3.1ubuntu1
hardy

released

0.cvs20060823-3.1ubuntu1
intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

0.8.7-5ubuntu1
devel

DNE

edgy

released

0.8.7-5ubuntu1
feisty

released

0.8.7-5ubuntu1
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

0.10.1-0ubuntu2
devel

released

0.10.1-0ubuntu2
edgy

released

0.10.1-0ubuntu2
feisty

released

0.10.1-0ubuntu2
gutsy

released

0.10.1-0ubuntu2
hardy

released

0.10.1-0ubuntu2
intrepid

released

0.10.1-0ubuntu2
jaunty

released

0.10.1-0ubuntu2
karmic

released

0.10.1-0ubuntu2
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

edgy

not-affected

feisty

not-affected

gutsy

not-affected

hardy

not-affected

intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

0.8.6.release-0ubuntu4
edgy

released

0.8.6-svn20061012.debian-1ubuntu1.1
feisty

released

0.8.6.release-0ubuntu4
gutsy

released

0.8.6.release-0ubuntu4
hardy

released

0.8.6.release-0ubuntu4
intrepid

released

0.8.6.release-0ubuntu4
jaunty

released

0.8.6.release-0ubuntu4
karmic

released

0.8.6.release-0ubuntu4
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

1.1.1+ubuntu1-2
devel

DNE

edgy

released

1.1.1+ubuntu1-2
feisty

released

1.1.1+ubuntu1-2
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

1.1.1+ubuntu2-7.7
devel

released

1.1.4-2ubuntu3
edgy

released

1.1.2+repacked1-0ubuntu3.4
feisty

released

1.1.4-2ubuntu3
gutsy

released

1.1.4-2ubuntu3
hardy

released

1.1.4-2ubuntu3
intrepid

released

1.1.4-2ubuntu3
jaunty

released

1.1.4-2ubuntu3
karmic

released

1.1.4-2ubuntu3
upstream

needs-triage

Показывать по

EPSS

Процентиль: 90%
0.05923
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
почти 20 лет назад

Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.

debian
почти 20 лет назад

Heap-based buffer overflow in the avcodec_default_get_buffer function ...

github
больше 3 лет назад

Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.

CVSS3: 7.3
fstec
почти 20 лет назад

Уязвимость функции avcodec_default_get_buffer (utils.c) библиотеки Libavcodec из состава мультимедийных библиотек Ffmpeg, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 90%
0.05923
Низкий

7.5 High

CVSS2