Описание
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer overflow conditions, potentially resulting in undefined behavior or crashes during the decoding process.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 7:7.1.1-1ubuntu1 |
esm-apps/bionic | not-affected | code not present |
esm-apps/focal | not-affected | code not present |
esm-apps/jammy | not-affected | code not present |
esm-apps/noble | not-affected | code not present |
esm-apps/xenial | not-affected | code not present |
focal | not-affected | code not present |
jammy | not-affected | code not present |
noble | not-affected | code not present |
oracular | not-affected | 7:7.0.2-3ubuntu1.1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | needs-triage | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
noble | DNE | |
oracular | DNE | |
plucky | DNE | |
trusty/esm | ignored | end of ESM support, was needs-triage |
upstream | needs-triage |
Показывать по
Ссылки на источники
5.5 Medium
CVSS3
Связанные уязвимости
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer overflow conditions, potentially resulting in undefined behavior or crashes during the decoding process.
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c m ...
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer overflow conditions, potentially resulting in undefined behavior or crashes during the decoding process.
Уязвимость модуля avcodec/speexdec.c мультимедийной библиотеки Ffmpeg, позволяющая нарушителю вызвать отказ в обслуживании
5.5 Medium
CVSS3