CVE-2012-0823
23.02.2012, 20:07
VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt input" or (2) by "starting decoding from a P-frame," which triggers an out-of-bounds read, related to "the clamping of motion vectors in SPLITMV blocks".Enginsight
| Vendor | Product | Version |
|---|---|---|
| webmproject | libvpx | 𝑥 ≤ 0.9.7 |
| webmproject | libvpx | 0.9.0 |
| webmproject | libvpx | 0.9.1 |
| webmproject | libvpx | 0.9.2 |
| webmproject | libvpx | 0.9.5 |
| webmproject | libvpx | 0.9.6 |
| webmproject | libvpx | 0.9.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References