CVE-2017-17081
30.11.2017, 21:29
The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 2.3 and 3.4 does not properly validate widths and heights, which allows remote attackers to cause a denial of service (integer signedness error and out-of-array read) via a crafted MPEG file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ffmpeg | ffmpeg | 3.4 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||||||||||||||||||||||||
| ffmpeg |
| ||||||||||||||||||||||||||||||||||
| gst-libav1.0 |
| ||||||||||||||||||||||||||||||||||
| oxide-qt |
| ||||||||||||||||||||||||||||||||||
| qtwebengine-opensource-src |
| ||||||||||||||||||||||||||||||||||
| vlc |
|
Common Weakness Enumeration
References