CVE-2012-2803: Double Free
Double free vulnerability in the mpegdecodeframe function in libavcodec/mpeg12.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, has unknown impact and attack vectors, related to resetting the data size value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2803?
The severity of CVE-2012-2803 is currently unknown due to the unspecified impact and attack vectors associated with the vulnerability.
How do I fix CVE-2012-2803?
To fix CVE-2012-2803, update to FFmpeg versions newer than 0.10.4 or Libav versions 0.7.7 and 0.8.5 or later.
Which software versions are affected by CVE-2012-2803?
CVE-2012-2803 affects FFmpeg versions up to 0.10.4 and Libav versions prior to 0.7.7 and 0.8.5.
What type of vulnerability is CVE-2012-2803?
CVE-2012-2803 is classified as a double free vulnerability in the mpeg_decode_frame function.
Can I safely use affected versions of FFmpeg and Libav?
Using affected versions of FFmpeg and Libav is not recommended as they may expose your system to potential vulnerabilities.