FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a negative-size-param bug at libavcodec/mpegvideo_enc.c:1216:21 in load_input_picture in FFmpeg7.0
References
Link | Resource |
---|---|
https://trac.ffmpeg.org/ticket/10952 | Exploit Vendor Advisory |
https://trac.ffmpeg.org/ticket/10952 | Exploit Vendor Advisory |
Configurations
History
21 Nov 2024, 09:14
Type | Values Removed | Values Added |
---|---|---|
References | () https://trac.ffmpeg.org/ticket/10952 - Exploit, Vendor Advisory |
22 Aug 2024, 13:24
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-120 | |
CPE | cpe:2.3:a:ffmpeg:ffmpeg:7.0:*:*:*:*:*:*:* | |
First Time |
Ffmpeg ffmpeg
Ffmpeg |
|
References | () https://trac.ffmpeg.org/ticket/10952 - Exploit, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
02 Jul 2024, 12:09
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
01 Jul 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-01 21:15
Updated : 2024-11-21 09:14
NVD link : CVE-2024-32230
Mitre link : CVE-2024-32230
CVE.ORG link : CVE-2024-32230
JSON object : View
Products Affected
ffmpeg
- ffmpeg
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')