Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-9995

libavcodec/scpr.c in FFmpeg 3.3 before 3.3.1 does not properly validate height and width data, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 58.6%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
Products affected by CVE-2017-9995
  • Ffmpeg » Ffmpeg » Version: 3.3
    cpe:2.3:a:ffmpeg:ffmpeg:3.3


Contact Us

Shodan ® - All rights reserved