Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1931

Опубликовано: 07 июл. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed AMV file.

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

not-affected

4:0.5.1-1ubuntu1.1
maverick

released

4:0.6-2ubuntu6.2
natty

DNE

oneiric

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

not-affected

4:0.5.1-1ubuntu1.1
maverick

released

4:0.6-2ubuntu3.3
natty

DNE

oneiric

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

4:0.7.1-3ubuntu1
hardy

DNE

lucid

DNE

maverick

DNE

natty

released

4:0.6.2-1ubuntu1.1
oneiric

not-affected

4:0.7.1-3ubuntu1
upstream

released

4:0.6.2-3

Показывать по

РелизСтатусПримечание
devel

not-affected

4:0.7.1.0ubuntu2
hardy

DNE

lucid

DNE

maverick

DNE

natty

released

4:0.6.4-1ubuntu1
oneiric

not-affected

4:0.7.1.0ubuntu2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 84%
0.02339
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed AMV file.

debian
больше 14 лет назад

sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg bef ...

github
больше 3 лет назад

sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed AMV file.

EPSS

Процентиль: 84%
0.02339
Низкий

6.8 Medium

CVSS2