Описание
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 7:3.4.8-0ubuntu0.2 |
| devel | not-affected | 7:4.2.1-2 |
| disco | ignored | end of life |
| eoan | ignored | end of life |
| esm-apps/bionic | released | 7:3.4.8-0ubuntu0.2 |
| esm-apps/focal | not-affected | 7:4.2.1-2 |
| esm-apps/xenial | released | 7:2.8.17-0ubuntu0.1 |
| esm-infra-legacy/trusty | DNE | |
| focal | not-affected | 7:4.2.1-2 |
| precise/esm | DNE |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk ...
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
Уязвимость мультимедийной библиотеки Ffmpeg, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3