Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-14767
HistorySep 27, 2017 - 8:29 a.m.

Heap overflow

2017-09-2708:29:00
PRIOn knowledge base
www.prio-n.com
7

8.9 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.1%

The sdp_parse_fmtp_config_h264 function in libavformat/rtpdec_h264.c in FFmpeg before 3.3.4 mishandles empty sprop-parameter-sets values, which allows remote attackers to cause a denial of service (heap buffer overflow) or possibly have unspecified other impact via a crafted sdp file.

CPENameOperatorVersion
ffmpegle3.3.3

8.9 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.1%