CVE-2014-2097
02.03.2014, 04:57
The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted TAK (aka Tom's lossless Audio Kompressor) data.Enginsight
Vendor | Product | Version |
---|---|---|
ffmpeg | ffmpeg | 𝑥 ≤ 2.1.3 |
ffmpeg | ffmpeg | 2.0 |
ffmpeg | ffmpeg | 2.0.1 |
ffmpeg | ffmpeg | 2.0.2 |
ffmpeg | ffmpeg | 2.0.3 |
ffmpeg | ffmpeg | 2.1 |
ffmpeg | ffmpeg | 2.1.1 |
ffmpeg | ffmpeg | 2.1.2 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration