Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-3109

Опубликовано: 16 дек. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

esm-apps/bionic

released

7:3.4.11-0ubuntu0.1+esm1
esm-apps/focal

released

7:4.2.7-0ubuntu0.1+esm1
esm-apps/jammy

released

7:4.4.2-0ubuntu0.22.04.1+esm1
esm-apps/noble

not-affected

esm-apps/xenial

released

7:2.8.17-0ubuntu0.1+esm5
focal

ignored

end of standard support, was needed
jammy

needed

kinetic

not-affected

7:5.1.1-1ubuntu1

Показывать по

EPSS

Процентиль: 40%
0.00181
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
около 3 лет назад

An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.

CVSS3: 7.5
debian
около 3 лет назад

An issue was discovered in the FFmpeg package, where vp3_decode_frame ...

suse-cvrf
около 3 лет назад

Security update for ffmpeg-4

suse-cvrf
около 3 лет назад

Security update for ffmpeg

CVSS3: 7.5
github
около 3 лет назад

An issue was discovered in the FFmpeg through 3.0. vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause the null pointer dereference, impacting confidentiality and availability.

EPSS

Процентиль: 40%
0.00181
Низкий

7.5 High

CVSS3