he avpriv_dv_produce_packet function in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) and possibly execute arbitrary code via a crafted DV file.
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
21 Nov 2024, 01:31
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://ffmpeg.org/ - | |
| References | () http://git.libav.org/?p=libav.git%3Ba=commit%3Bh=635bcfccd439480003b74a665b5aa7c872c1ad6b - | |
| References | () http://git.libav.org/?p=libav.git%3Ba=commitdiff%3Bh=5a396bb3a66a61a68b80f2369d0249729bf85e04 - | |
| References | () http://libav.org/ - | |
| References | () http://secunia.com/advisories/49089 - | |
| References | () http://www.debian.org/security/2012/dsa-2471 - | |
| References | () http://www.ubuntu.com/usn/USN-1479-1 - |
Published : 2012-08-20 18:55
Updated : 2025-04-11 00:51
NVD link : CVE-2011-3929
Mitre link : CVE-2011-3929
CVE.ORG link : CVE-2011-3929
JSON object : View
Improper Restriction of Operations within the Bounds of a Memory Buffer