CVE-2013-0847: Buffer Overflow
The ffid3v2parse function in libavformat/id3v2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via ID3v2 header data, which triggers an out-of-bounds array access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0847?
CVE-2013-0847 is classified as having medium severity due to its potential for triggering out-of-bounds array access and allowing remote attackers to compromise the system.
How do I fix CVE-2013-0847?
To fix CVE-2013-0847, upgrade to FFmpeg version 1.1 or later, where the vulnerability has been addressed.
Which versions of FFmpeg are affected by CVE-2013-0847?
CVE-2013-0847 affects all FFmpeg versions before 1.1, including versions 0.3 to 1.0.
What type of attack is associated with CVE-2013-0847?
CVE-2013-0847 is associated with remote code execution attacks through crafted ID3v2 header data, potentially leading to arbitrary code execution.
Are there any known exploits for CVE-2013-0847?
As of now, there are no widely known public exploits specifically targeting CVE-2013-0847.