Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-0873
HistoryNov 23, 2013 - 12:00 a.m.

CVE-2013-0873

2013-11-2300:00:00
ubuntu.com
ubuntu.com
11

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.004

Percentile

73.5%

The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3
allows remote attackers to have an unspecified impact via an invalid
channel count, related to “freeing invalid addresses.”

Notes

Author Note
mdeslaur libav and ffmpeg codebases have diverged to the point of not being able to track both using the same CVE numbers. Marking this CVE as not-affected for libav.

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.004

Percentile

73.5%