Lucene search

K
cveChromeCVE-2013-0876
HistoryNov 23, 2013 - 5:55 p.m.

CVE-2013-0876

2013-11-2317:55:03
CWE-189
Chrome
web.nvd.nist.gov
25
cve-2013-0876
integer overflow
libavcodec
sanm.c
ffmpeg
out-of-bounds access
lucasarts smush
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.004

Percentile

72.4%

Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1.1.3 allow remote attackers to have an unspecified impact via crafted LucasArts Smush data, which triggers an out-of-bounds array access.

Affected configurations

Nvd
Node
ffmpegffmpegRange1.1.2
OR
ffmpegffmpegMatch0.3
OR
ffmpegffmpegMatch0.3.1
OR
ffmpegffmpegMatch0.3.2
OR
ffmpegffmpegMatch0.3.3
OR
ffmpegffmpegMatch0.3.4
OR
ffmpegffmpegMatch0.4.0
OR
ffmpegffmpegMatch0.4.2
OR
ffmpegffmpegMatch0.4.3
OR
ffmpegffmpegMatch0.4.4
OR
ffmpegffmpegMatch0.4.5
OR
ffmpegffmpegMatch0.4.6
OR
ffmpegffmpegMatch0.4.7
OR
ffmpegffmpegMatch0.4.8
OR
ffmpegffmpegMatch0.4.9pre1
OR
ffmpegffmpegMatch0.5
OR
ffmpegffmpegMatch0.5.1
OR
ffmpegffmpegMatch0.5.2
OR
ffmpegffmpegMatch0.5.3
OR
ffmpegffmpegMatch0.5.4
OR
ffmpegffmpegMatch0.5.4.5
OR
ffmpegffmpegMatch0.5.4.6
OR
ffmpegffmpegMatch0.6
OR
ffmpegffmpegMatch0.6.1
OR
ffmpegffmpegMatch0.6.2
OR
ffmpegffmpegMatch0.6.3
OR
ffmpegffmpegMatch0.7
OR
ffmpegffmpegMatch0.7.1
OR
ffmpegffmpegMatch0.7.2
OR
ffmpegffmpegMatch0.7.3
OR
ffmpegffmpegMatch0.7.4
OR
ffmpegffmpegMatch0.7.5
OR
ffmpegffmpegMatch0.7.6
OR
ffmpegffmpegMatch0.7.7
OR
ffmpegffmpegMatch0.7.8
OR
ffmpegffmpegMatch0.7.9
OR
ffmpegffmpegMatch0.7.11
OR
ffmpegffmpegMatch0.7.12
OR
ffmpegffmpegMatch0.8.0
OR
ffmpegffmpegMatch0.8.1
OR
ffmpegffmpegMatch0.8.2
OR
ffmpegffmpegMatch0.8.5
OR
ffmpegffmpegMatch0.8.5.3
OR
ffmpegffmpegMatch0.8.5.4
OR
ffmpegffmpegMatch0.8.6
OR
ffmpegffmpegMatch0.8.7
OR
ffmpegffmpegMatch0.8.8
OR
ffmpegffmpegMatch0.8.10
OR
ffmpegffmpegMatch0.8.11
OR
ffmpegffmpegMatch0.9
OR
ffmpegffmpegMatch0.9.1
OR
ffmpegffmpegMatch0.10
OR
ffmpegffmpegMatch0.10.3
OR
ffmpegffmpegMatch0.10.4
OR
ffmpegffmpegMatch0.11
OR
ffmpegffmpegMatch1.0
OR
ffmpegffmpegMatch1.1.1
VendorProductVersionCPE
ffmpegffmpeg*cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*
ffmpegffmpeg0.3cpe:2.3:a:ffmpeg:ffmpeg:0.3:*:*:*:*:*:*:*
ffmpegffmpeg0.3.1cpe:2.3:a:ffmpeg:ffmpeg:0.3.1:*:*:*:*:*:*:*
ffmpegffmpeg0.3.2cpe:2.3:a:ffmpeg:ffmpeg:0.3.2:*:*:*:*:*:*:*
ffmpegffmpeg0.3.3cpe:2.3:a:ffmpeg:ffmpeg:0.3.3:*:*:*:*:*:*:*
ffmpegffmpeg0.3.4cpe:2.3:a:ffmpeg:ffmpeg:0.3.4:*:*:*:*:*:*:*
ffmpegffmpeg0.4.0cpe:2.3:a:ffmpeg:ffmpeg:0.4.0:*:*:*:*:*:*:*
ffmpegffmpeg0.4.2cpe:2.3:a:ffmpeg:ffmpeg:0.4.2:*:*:*:*:*:*:*
ffmpegffmpeg0.4.3cpe:2.3:a:ffmpeg:ffmpeg:0.4.3:*:*:*:*:*:*:*
ffmpegffmpeg0.4.4cpe:2.3:a:ffmpeg:ffmpeg:0.4.4:*:*:*:*:*:*:*
Rows per page:
1-10 of 571

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.004

Percentile

72.4%