FFmpeg and Libav 'libavcodec/mmvideo.c' Denial of Service Vulnerability
BID:70876
Info
FFmpeg and Libav 'libavcodec/mmvideo.c' Denial of Service Vulnerability
| Bugtraq ID: | 70876 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2014-8543 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 03 2014 12:00AM |
| Updated: | Jul 05 2016 09:43PM |
| Credit: | Mateusz "j00ru" Jurczyk and Gynvael Coldwind |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Libav Libav 0 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: | |
Discussion
FFmpeg and Libav 'libavcodec/mmvideo.c' Denial of Service Vulnerability
FFmpeg and Libav are prone to denial-of-service vulnerability.
An attacker can exploit this issue to cause the application using the affected library to crash, denying service to legitimate users. Due to the nature of this issue, arbitrary code execution may be possible, but has not been confirmed.
FFmpeg and Libav are prone to denial-of-service vulnerability.
An attacker can exploit this issue to cause the application using the affected library to crash, denying service to legitimate users. Due to the nature of this issue, arbitrary code execution may be possible, but has not been confirmed.
References
FFmpeg and Libav 'libavcodec/mmvideo.c' Denial of Service Vulnerability
References:
References:
- avcodec/mmvideo: Bounds check 2nd line of HHV Intra blocks (Videolan)
- FFmpeg Homepage (FFmpeg )
- FFmpeg Security (FFmpeg)