Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-10699

Опубликовано: 30 июн. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

РелизСтатусПримечание
artful

not-affected

2.2.6-2ubuntu1
bionic

not-affected

2.2.6-2ubuntu1
cosmic

not-affected

2.2.6-2ubuntu1
devel

not-affected

2.2.6-2ubuntu1
disco

not-affected

2.2.6-2ubuntu1
esm-apps-legacy/xenial

released

2.2.2-5ubuntu0.16.04.3
esm-apps/bionic

not-affected

2.2.6-2ubuntu1
esm-apps/xenial

released

2.2.2-5ubuntu0.16.04.3
esm-infra-legacy/trusty

DNE

trusty/esm was released [2.1.6-0ubuntu14.04.5+esm1]
precise/esm

DNE

Показывать по

EPSS

Процентиль: 90%
0.04125
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 9 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

CVSS3: 9.8
debian
около 9 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 201 ...

CVSS3: 9.8
github
больше 4 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

fstec
около 9 лет назад

Уязвимость кодека avcodec медиаплеера VideoLAN Media Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

EPSS

Процентиль: 90%
0.04125
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3