Lucene search

K
cveMitreCVE-2014-8541
HistoryNov 05, 2014 - 11:55 a.m.

CVE-2014-8541

2014-11-0511:55:07
CWE-119
mitre
web.nvd.nist.gov
44
ffmpeg
cve-2014-8541
denial of service
vulnerability
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.9

Confidence

High

EPSS

0.006

Percentile

79.5%

libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determining whether an image size has changed, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted MJPEG data.

Affected configurations

Nvd
Node
canonicalubuntu_linuxMatch12.04lts
Node
ffmpegffmpegRange2.4.1
OR
ffmpegffmpegMatch0.3
OR
ffmpegffmpegMatch0.3.1
OR
ffmpegffmpegMatch0.3.2
OR
ffmpegffmpegMatch0.3.3
OR
ffmpegffmpegMatch0.3.4
OR
ffmpegffmpegMatch0.4.0
OR
ffmpegffmpegMatch0.4.2
OR
ffmpegffmpegMatch0.4.3
OR
ffmpegffmpegMatch0.4.4
OR
ffmpegffmpegMatch0.4.5
OR
ffmpegffmpegMatch0.4.6
OR
ffmpegffmpegMatch0.4.7
OR
ffmpegffmpegMatch0.4.8
OR
ffmpegffmpegMatch0.4.9pre1
OR
ffmpegffmpegMatch0.5
OR
ffmpegffmpegMatch0.5.1
OR
ffmpegffmpegMatch0.5.2
OR
ffmpegffmpegMatch0.5.3
OR
ffmpegffmpegMatch0.5.4
OR
ffmpegffmpegMatch0.5.4.5
OR
ffmpegffmpegMatch0.5.4.6
OR
ffmpegffmpegMatch0.5.5
OR
ffmpegffmpegMatch0.6
OR
ffmpegffmpegMatch0.6.1
OR
ffmpegffmpegMatch0.6.2
OR
ffmpegffmpegMatch0.6.3
OR
ffmpegffmpegMatch0.7
OR
ffmpegffmpegMatch0.7.1
OR
ffmpegffmpegMatch0.7.2
OR
ffmpegffmpegMatch0.7.3
OR
ffmpegffmpegMatch0.7.4
OR
ffmpegffmpegMatch0.7.5
OR
ffmpegffmpegMatch0.7.6
OR
ffmpegffmpegMatch0.7.7
OR
ffmpegffmpegMatch0.7.8
OR
ffmpegffmpegMatch0.7.9
OR
ffmpegffmpegMatch0.7.11
OR
ffmpegffmpegMatch0.7.12
OR
ffmpegffmpegMatch0.8.0
OR
ffmpegffmpegMatch0.8.1
OR
ffmpegffmpegMatch0.8.2
OR
ffmpegffmpegMatch0.8.5
OR
ffmpegffmpegMatch0.8.5.3
OR
ffmpegffmpegMatch0.8.5.4
OR
ffmpegffmpegMatch0.8.6
OR
ffmpegffmpegMatch0.8.7
OR
ffmpegffmpegMatch0.8.8
OR
ffmpegffmpegMatch0.8.10
OR
ffmpegffmpegMatch0.8.11
OR
ffmpegffmpegMatch0.9
OR
ffmpegffmpegMatch0.9.1
OR
ffmpegffmpegMatch0.10
OR
ffmpegffmpegMatch0.10.3
OR
ffmpegffmpegMatch0.10.4
OR
ffmpegffmpegMatch0.11
OR
ffmpegffmpegMatch0.11.1
OR
ffmpegffmpegMatch0.11.2
OR
ffmpegffmpegMatch0.11.3
OR
ffmpegffmpegMatch0.11.4
OR
ffmpegffmpegMatch1.0
OR
ffmpegffmpegMatch1.0.1
OR
ffmpegffmpegMatch1.0.2
OR
ffmpegffmpegMatch1.0.3
OR
ffmpegffmpegMatch1.0.4
OR
ffmpegffmpegMatch1.1
OR
ffmpegffmpegMatch1.1.1
OR
ffmpegffmpegMatch1.1.2
OR
ffmpegffmpegMatch1.1.3
OR
ffmpegffmpegMatch1.1.4
OR
ffmpegffmpegMatch1.1.5
OR
ffmpegffmpegMatch1.1.6
OR
ffmpegffmpegMatch1.1.7
OR
ffmpegffmpegMatch1.1.8
OR
ffmpegffmpegMatch1.1.9
OR
ffmpegffmpegMatch1.1.10
OR
ffmpegffmpegMatch1.1.11
OR
ffmpegffmpegMatch1.1.12
OR
ffmpegffmpegMatch1.1.13
OR
ffmpegffmpegMatch1.2
OR
ffmpegffmpegMatch1.2.1
OR
ffmpegffmpegMatch1.2.3
OR
ffmpegffmpegMatch1.2.4
OR
ffmpegffmpegMatch1.2.5
OR
ffmpegffmpegMatch1.2.6
OR
ffmpegffmpegMatch1.2.7
OR
ffmpegffmpegMatch2.0
OR
ffmpegffmpegMatch2.0.1
OR
ffmpegffmpegMatch2.0.2
OR
ffmpegffmpegMatch2.0.3
OR
ffmpegffmpegMatch2.0.4
OR
ffmpegffmpegMatch2.0.5
OR
ffmpegffmpegMatch2.1
OR
ffmpegffmpegMatch2.1.1
OR
ffmpegffmpegMatch2.1.2
OR
ffmpegffmpegMatch2.1.3
OR
ffmpegffmpegMatch2.1.4
OR
ffmpegffmpegMatch2.1.5
OR
ffmpegffmpegMatch2.2
OR
ffmpegffmpegMatch2.2.4
OR
ffmpegffmpegMatch2.3
OR
ffmpegffmpegMatch2.3.2
OR
ffmpegffmpegMatch2.3.3
OR
ffmpegffmpegMatch2.3.4
OR
ffmpegffmpegMatch2.4
VendorProductVersionCPE
canonicalubuntu_linux12.04cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
ffmpegffmpeg*cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*
ffmpegffmpeg0.3cpe:2.3:a:ffmpeg:ffmpeg:0.3:*:*:*:*:*:*:*
ffmpegffmpeg0.3.1cpe:2.3:a:ffmpeg:ffmpeg:0.3.1:*:*:*:*:*:*:*
ffmpegffmpeg0.3.2cpe:2.3:a:ffmpeg:ffmpeg:0.3.2:*:*:*:*:*:*:*
ffmpegffmpeg0.3.3cpe:2.3:a:ffmpeg:ffmpeg:0.3.3:*:*:*:*:*:*:*
ffmpegffmpeg0.3.4cpe:2.3:a:ffmpeg:ffmpeg:0.3.4:*:*:*:*:*:*:*
ffmpegffmpeg0.4.0cpe:2.3:a:ffmpeg:ffmpeg:0.4.0:*:*:*:*:*:*:*
ffmpegffmpeg0.4.2cpe:2.3:a:ffmpeg:ffmpeg:0.4.2:*:*:*:*:*:*:*
ffmpegffmpeg0.4.3cpe:2.3:a:ffmpeg:ffmpeg:0.4.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 1061

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.9

Confidence

High

EPSS

0.006

Percentile

79.5%