Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-35965
decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform memset zero operations.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
55.4%
CVSS Severity
CVSS v3 Score
7.5
CVSS v2 Score
5.0
References
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=26532
https://github.com/FFmpeg/FFmpeg/commit/3e5959b3457f7f1856d997261e6ac672bba49e8b
https://github.com/FFmpeg/FFmpeg/commit/b0a8b40294ea212c1938348ff112ef1b9bf16bb3
https://lists.debian.org/debian-lts-announce/2021/01/msg00026.html
https://security.gentoo.org/glsa/202105-24
https://www.debian.org/security/2021/dsa-4990
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=26532
https://github.com/FFmpeg/FFmpeg/commit/3e5959b3457f7f1856d997261e6ac672bba49e8b
https://github.com/FFmpeg/FFmpeg/commit/b0a8b40294ea212c1938348ff112ef1b9bf16bb3
https://lists.debian.org/debian-lts-announce/2021/01/msg00026.html
https://security.gentoo.org/glsa/202105-24
https://www.debian.org/security/2021/dsa-4990
Products affected by CVE-2020-35965
Ffmpeg
»
Ffmpeg
»
Version:
4.3.1
cpe:2.3:a:ffmpeg:ffmpeg:4.3.1
Ffmpeg
»
Ffmpeg
»
Version:
4.3.2
cpe:2.3:a:ffmpeg:ffmpeg:4.3.2
Ffmpeg
»
Ffmpeg
»
Version:
4.3.3
cpe:2.3:a:ffmpeg:ffmpeg:4.3.3
Ffmpeg
»
Ffmpeg
»
Version:
4.3.4
cpe:2.3:a:ffmpeg:ffmpeg:4.3.4
Ffmpeg
»
Ffmpeg
»
Version:
4.3.5
cpe:2.3:a:ffmpeg:ffmpeg:4.3.5
Ffmpeg
»
Ffmpeg
»
Version:
4.3.6
cpe:2.3:a:ffmpeg:ffmpeg:4.3.6
Ffmpeg
»
Ffmpeg
»
Version:
4.3.7
cpe:2.3:a:ffmpeg:ffmpeg:4.3.7
Ffmpeg
»
Ffmpeg
»
Version:
4.3.8
cpe:2.3:a:ffmpeg:ffmpeg:4.3.8
Ffmpeg
»
Ffmpeg
»
Version:
4.3.9
cpe:2.3:a:ffmpeg:ffmpeg:4.3.9
Debian
»
Debian Linux
»
Version:
10.0
cpe:2.3:o:debian:debian_linux:10.0
Debian
»
Debian Linux
»
Version:
9.0
cpe:2.3:o:debian:debian_linux:9.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved