CVE-2016-10192
EUVD-2016-137909.02.2017, 15:59
Heap-based buffer overflow in ffserver.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attackers to execute arbitrary code by leveraging failure to check chunk size.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ffmpeg | ffmpeg | 𝑥 ≤ 2.8.9 |
| ffmpeg | ffmpeg | 3.0 |
| ffmpeg | ffmpeg | 3.0.1 |
| ffmpeg | ffmpeg | 3.0.2 |
| ffmpeg | ffmpeg | 3.0.3 |
| ffmpeg | ffmpeg | 3.0.4 |
| ffmpeg | ffmpeg | 3.1 |
| ffmpeg | ffmpeg | 3.1.1 |
| ffmpeg | ffmpeg | 3.1.2 |
| ffmpeg | ffmpeg | 3.1.3 |
| ffmpeg | ffmpeg | 3.1.4 |
| ffmpeg | ffmpeg | 3.1.5 |
| ffmpeg | ffmpeg | 3.2 |
| ffmpeg | ffmpeg | 3.2.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References