Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26244
HistoryAug 06, 2020 - 9:38 p.m.

Arbitrary Code Execution

2020-08-0621:38:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.002 Low

EPSS

Percentile

52.8%

FFmpeg is vulnerable to arbitrary code execution. A use-after-free bug occurs via a crafted EXTINF duration in an m3u8 file because parse_playlist in libavformat/hls.c frees a pointer later access that pointer in av_probe_input_format3 in libavformat/format.c.