Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3422
HistoryFeb 03, 2017 - 5:46 a.m.

Denial Of Service (DoS) From Out-of-bounds Heap Access

2017-02-0305:46:59
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.006

Percentile

77.7%

FFMpeg is vulnerable to denial of service (DoS) attacks and other attacks. These attacks are possible because the raw_decode function allows remote attackers to cause an out-of-bounds heap access. The attacks can be performed through a .cine file that triggers the avpicture_get_size to return a negative frame size.