Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-10699

Опубликовано: 30 июн. 2017
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5
CVSS3: 9.8

Описание

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

РелизСтатусПримечание
artful

not-affected

2.2.6-2ubuntu1
bionic

not-affected

2.2.6-2ubuntu1
cosmic

not-affected

2.2.6-2ubuntu1
devel

not-affected

2.2.6-2ubuntu1
disco

not-affected

2.2.6-2ubuntu1
esm-apps/bionic

not-affected

2.2.6-2ubuntu1
esm-apps/xenial

released

2.2.2-5ubuntu0.16.04.3
esm-infra-legacy/trusty

DNE

trusty/esm was released [2.1.6-0ubuntu14.04.5+esm1]
precise/esm

DNE

trusty

ignored

end of standard support

Показывать по

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

CVSS3: 9.8
debian
больше 8 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 201 ...

CVSS3: 9.8
github
больше 3 лет назад

avcodec 2.2.x, as used in VideoLAN VLC media player 2.2.7-x before 2017-06-29, allows out-of-bounds heap memory write due to calling memcpy() with a wrong size, leading to a denial of service (application crash) or possibly code execution.

fstec
больше 8 лет назад

Уязвимость кодека avcodec медиаплеера VideoLAN Media Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

7.5 High

CVSS2

9.8 Critical

CVSS3