Vulnerabilities
Vulnerable Software
Ffmpeg:  >> Ffmpeg  >> 2.4.7  Security Vulnerabilities
The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a certain length value and the frame width, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Sierra VMD video data.
CVSS Score
7.5
EPSS Score
0.009
Published
2015-01-16
libavcodec/xface.h in FFmpeg before 2.5.2 establishes certain digits and words array dimensions that do not satisfy a required mathematical relationship, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted X-Face image data.
CVSS Score
7.5
EPSS Score
0.005
Published
2015-01-16


Contact Us

Shodan ® - All rights reserved