CVE-2012-2772: Critical severity Libav Libav vulnerability
Unspecified vulnerability in the ffrv34decodeframe function in libavcodec/rv34.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors, related to "width/height changing with frame threading."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2772?
The severity of CVE-2012-2772 is currently unknown due to unspecified impact and attack vectors.
How do I fix CVE-2012-2772?
To fix CVE-2012-2772, upgrade to FFmpeg version 0.11 or later, or Libav version 0.7.7 or later.
Which versions of software are affected by CVE-2012-2772?
CVE-2012-2772 affects FFmpeg versions before 0.11 and Libav versions 0.7.x before 0.7.7 and 0.8.x before 0.8.4.
What is the cause of CVE-2012-2772?
CVE-2012-2772 is caused by an issue in the ff_rv34_decode_frame function related to "width/height changing with frame threading."
Can I still use affected versions of FFmpeg and Libav safely with CVE-2012-2772?
It is not recommended to use affected versions of FFmpeg and Libav as they may expose your system to vulnerabilities.