Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-2097

Опубликовано: 02 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted TAK (aka Tom's lossless Audio Kompressor) data.

РелизСтатусПримечание
devel

DNE

lucid

ignored

end of life
precise

DNE

quantal

DNE

saucy

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 62%
0.0043
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted TAK (aka Tom's lossless Audio Kompressor) data.

debian
почти 12 лет назад

The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before ...

github
больше 3 лет назад

The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted TAK (aka Tom's lossless Audio Kompressor) data.

EPSS

Процентиль: 62%
0.0043
Низкий

6.8 Medium

CVSS2