Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-0855

Опубликовано: 07 дек. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 9.3

Описание

Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a large number of samples per frame in Apple Lossless Audio Codec (ALAC) data, which triggers an out-of-bounds array access.

РелизСтатусПримечание
devel

DNE

lucid

ignored

end of life
precise

DNE

quantal

DNE

raring

DNE

saucy

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

lucid

ignored

precise

DNE

quantal

DNE

raring

DNE

saucy

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

upstream

needs-triage

Показывать по

EPSS

Процентиль: 73%
0.0077
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

nvd
около 12 лет назад

Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a large number of samples per frame in Apple Lossless Audio Codec (ALAC) data, which triggers an out-of-bounds array access.

debian
около 12 лет назад

Integer overflow in the alac_decode_close function in libavcodec/alac. ...

github
больше 3 лет назад

Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a large number of samples per frame in Apple Lossless Audio Codec (ALAC) data, which triggers an out-of-bounds array access.

EPSS

Процентиль: 73%
0.0077
Низкий

9.3 Critical

CVSS2