FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
BID:66057
Info
FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
| Bugtraq ID: | 66057 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2014-2098 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 07 2014 12:00AM |
| Updated: | Jul 05 2016 09:43PM |
| Credit: | Mateusz "j00ru" Jurczyk and Gynvael Coldwind |
| Vulnerable: |
Gentoo Linux |
| Not Vulnerable: | |
Discussion
FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
FFmpeg and Libav are prone to a memory-corruption vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Attackers can leverage this issue to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
NOTE: These issues were previously discussed in BID 65504 (FFmpeg Multiple Denial of Service Vulnerabilities) but have been given their own record to better document them.
FFmpeg and Libav are prone to a memory-corruption vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Attackers can leverage this issue to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
NOTE: These issues were previously discussed in BID 65504 (FFmpeg Multiple Denial of Service Vulnerabilities) but have been given their own record to better document them.
Exploit / POC
FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
-
Mandriva ffmpeg-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64avcodec53-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64avfilter2-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64avformat53-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64avutil51-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64ffmpeg-devel-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64ffmpeg-static-devel-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64postproc52-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64swresample0-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64swscaler2-0.10.14-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
FFmpeg and Libav 'libavcodec/wmalosslessdec.c' Memory Corruption Vulnerability
References:
References:
- FFmpeg Homepage (FFmpeg)
- FFmpeg Multiple Vulnerabilities 0.10 Release Notes (FFmpeg)
- Libav Homepage (Libav)