Lucene search

K
cveRedhatCVE-2011-4353
HistoryAug 20, 2012 - 8:55 p.m.

CVE-2011-4353

2012-08-2020:55:02
CWE-119
redhat
web.nvd.nist.gov
45
ffmpeg
libav
denial of service
out-of-bounds read
vp5
vp6
cve-2011-4353

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

8.8

Confidence

High

EPSS

0.018

Percentile

88.5%

The (1) av_image_fill_pointers, (2) vp5_parse_coeff, and (3) vp6_parse_coeff functions in FFmpeg 0.5.x before 0.5.7, 0.6.x before 0.6.4, 0.7.x before 0.7.9, and 0.8.x before 0.8.8; and in Libav 0.5.x before 0.5.6, 0.6.x before 0.6.4, and 0.7.x before 0.7.3 allow remote attackers to cause a denial of service (out-of-bounds read) via a crafted VP5 or VP6 stream.

Affected configurations

Nvd
Node
ffmpegffmpegMatch0.5
OR
ffmpegffmpegMatch0.5.1
OR
ffmpegffmpegMatch0.5.2
OR
ffmpegffmpegMatch0.5.3
OR
ffmpegffmpegMatch0.5.4
OR
ffmpegffmpegMatch0.5.5
OR
ffmpegffmpegMatch0.6
OR
ffmpegffmpegMatch0.6.1
OR
ffmpegffmpegMatch0.6.2
OR
ffmpegffmpegMatch0.7
OR
ffmpegffmpegMatch0.7.1
OR
ffmpegffmpegMatch0.7.2
OR
ffmpegffmpegMatch0.7.3
OR
ffmpegffmpegMatch0.7.6
OR
ffmpegffmpegMatch0.7.7
OR
ffmpegffmpegMatch0.7.8
OR
ffmpegffmpegMatch0.8.0
OR
ffmpegffmpegMatch0.8.1
OR
ffmpegffmpegMatch0.8.2
OR
ffmpegffmpegMatch0.8.5
OR
ffmpegffmpegMatch0.8.6
OR
ffmpegffmpegMatch0.8.7
Node
libavlibavMatch0.5
OR
libavlibavMatch0.5.1
OR
libavlibavMatch0.5.2
OR
libavlibavMatch0.5.3
OR
libavlibavMatch0.5.4
OR
libavlibavMatch0.5.5
OR
libavlibavMatch0.6
OR
libavlibavMatch0.6.1
OR
libavlibavMatch0.6.2
OR
libavlibavMatch0.6.3
OR
libavlibavMatch0.6.4
OR
libavlibavMatch0.6.5
OR
libavlibavMatch0.7
OR
libavlibavMatch0.7.1
OR
libavlibavMatch0.7.2
VendorProductVersionCPE
ffmpegffmpeg0.5cpe:2.3:a:ffmpeg:ffmpeg:0.5:*:*:*:*:*:*:*
ffmpegffmpeg0.5.1cpe:2.3:a:ffmpeg:ffmpeg:0.5.1:*:*:*:*:*:*:*
ffmpegffmpeg0.5.2cpe:2.3:a:ffmpeg:ffmpeg:0.5.2:*:*:*:*:*:*:*
ffmpegffmpeg0.5.3cpe:2.3:a:ffmpeg:ffmpeg:0.5.3:*:*:*:*:*:*:*
ffmpegffmpeg0.5.4cpe:2.3:a:ffmpeg:ffmpeg:0.5.4:*:*:*:*:*:*:*
ffmpegffmpeg0.5.5cpe:2.3:a:ffmpeg:ffmpeg:0.5.5:*:*:*:*:*:*:*
ffmpegffmpeg0.6cpe:2.3:a:ffmpeg:ffmpeg:0.6:*:*:*:*:*:*:*
ffmpegffmpeg0.6.1cpe:2.3:a:ffmpeg:ffmpeg:0.6.1:*:*:*:*:*:*:*
ffmpegffmpeg0.6.2cpe:2.3:a:ffmpeg:ffmpeg:0.6.2:*:*:*:*:*:*:*
ffmpegffmpeg0.7cpe:2.3:a:ffmpeg:ffmpeg:0.7:*:*:*:*:*:*:*
Rows per page:
1-10 of 371

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

8.8

Confidence

High

EPSS

0.018

Percentile

88.5%