CVE-2013-0850: Buffer Overflow
The decodesliceheader function in libavcodec/h264.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted H.264 data, which triggers an out-of-bounds array access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0850?
CVE-2013-0850 has a high severity rating because it can lead to remote code execution through crafted H.264 data.
How do I fix CVE-2013-0850?
To fix CVE-2013-0850, upgrade FFmpeg to version 1.1 or later, as this version includes patches for the vulnerability.
Which versions of FFmpeg are affected by CVE-2013-0850?
CVE-2013-0850 affects FFmpeg versions prior to 1.1, including all versions from 0.3 up to 1.0.
What impact can CVE-2013-0850 have on systems?
CVE-2013-0850 may allow remote attackers to perform an out-of-bounds array access, potentially leading to crashes or arbitrary code execution.
Is there a workaround for CVE-2013-0850?
There are no known workarounds for CVE-2013-0850; the only effective solution is upgrading to a patched version of FFmpeg.