Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-11338

Опубликовано: 19 апр. 2019
Источник: ubuntu
Приоритет: low
CVSS2: 6.8
CVSS3: 8.8

Описание

libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.

РелизСтатусПримечание
bionic

released

7:3.4.6-0ubuntu0.18.04.1
cosmic

ignored

end of life
devel

not-affected

7:4.1.3-1
disco

released

7:4.1.3-0ubuntu1
eoan

not-affected

7:4.1.3-1
esm-apps/bionic

released

7:3.4.6-0ubuntu0.18.04.1
esm-apps/focal

not-affected

7:4.1.3-1
esm-apps/xenial

released

7:2.8.17-0ubuntu0.1
esm-infra-legacy/trusty

DNE

focal

not-affected

7:4.1.3-1

Показывать по

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 7 лет назад

libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.

CVSS3: 8.8
debian
почти 7 лет назад

libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of d ...

CVSS3: 8.8
github
больше 3 лет назад

libavcodec/hevcdec.c in FFmpeg 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.

CVSS3: 8.8
fstec
почти 7 лет назад

Уязвимость мультимедийной библиотеки FFmpeg, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
около 6 лет назад

Security update for ffmpeg-4

6.8 Medium

CVSS2

8.8 High

CVSS3