Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-6761
HistoryOct 15, 2015 - 10:59 a.m.

Race condition

2015-10-1510:59:00
PRIOn knowledge base
www.prio-n.com
7

7.5 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

78.5%

The update_dimensions function in libavcodec/vp8.c in FFmpeg through 2.8.1, as used in Google Chrome before 46.0.2490.71 and other products, relies on a coefficient-partition count during multi-threaded operation, which allows remote attackers to cause a denial of service (race condition and memory corruption) or possibly have unspecified other impact via a crafted WebM file.

CPENameOperatorVersion
ffmpegle2.8.1
chromele45.0.2454.101