FFmpeg 'libavformat/mxfdec.c' Denial of Service Vulnerability
BID:100700
CVE-2017-14170 |Info
FFmpeg 'libavformat/mxfdec.c' Denial of Service Vulnerability
| Bugtraq ID: | 100700 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2017-14170 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 07 2017 12:00AM |
| Updated: | Oct 11 2017 10:02AM |
| Credit: | Xiaohei and Wangchu from Alibaba Security Team. |
| Vulnerable: |
FFmpeg FFmpeg 3.3.3 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: | |
Discussion
FFmpeg 'libavformat/mxfdec.c' Denial of Service Vulnerability
FFmpeg is prone to a denial-of-service vulnerability.
An attacker may exploit this issue to cause CPU exhaustion, resulting in denial-of-service conditions.
FFmpeg 3.3.3 is vulnerable; other versions may also be affected.
FFmpeg is prone to a denial-of-service vulnerability.
An attacker may exploit this issue to cause CPU exhaustion, resulting in denial-of-service conditions.
FFmpeg 3.3.3 is vulnerable; other versions may also be affected.