CVE-2012-2777: Critical severity Libav Libav vulnerability
Unspecified vulnerability in the decodepic function in libavcodec/cavsdec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors, related to "width/height changing in CAVS," a different vulnerability than CVE-2012-2784.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2777?
The severity of CVE-2012-2777 is currently unknown due to unspecified impact and attack vectors.
How do I fix CVE-2012-2777?
To mitigate CVE-2012-2777, upgrade to FFmpeg version 0.11 or later, or Libav version 0.7.7 and 0.8.4 or later.
What software is affected by CVE-2012-2777?
CVE-2012-2777 affects FFmpeg versions up to 0.10.4 and Libav versions up to 0.8.3, including various earlier releases.
What is the main cause of CVE-2012-2777?
CVE-2012-2777 arises from a vulnerability in the decode_pic function related to width and height changes in CAVS.
Is there public disclosure of CVE-2012-2777?
Yes, CVE-2012-2777 has been publicly documented and acknowledged within the FFmpeg and Libav communities.