CVE-2014-9676
28.02.2015, 01:59
The seg_write_packet function in libavformat/segment.c in ffmpeg 2.1.4 and earlier does not free the correct memory location, which allows remote attackers to cause a denial of service ("invalid memory handler") and possibly execute arbitrary code via a crafted video that triggers a use after free.Enginsight| Vendor | Product | Version |
|---|---|---|
| ffmpeg | ffmpeg | 𝑥 ≤ 2.1.4 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ffmpeg |
| ||||||||||||||||||||||||||
| libav |
|