CVE-2013-0851: Buffer Overflow
The decodeframe function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Electronic Arts Madcow video data, which triggers an out-of-bounds array access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0851?
CVE-2013-0851 is considered to have a medium severity due to the potential for exploitation through crafted video data.
How do I fix CVE-2013-0851?
To fix CVE-2013-0851, upgrade to FFmpeg version 1.1 or later, which includes the required security patches.
What software is affected by CVE-2013-0851?
CVE-2013-0851 affects multiple versions of FFmpeg prior to version 1.1, including versions from 0.3 to 0.10.4.
What type of attack does CVE-2013-0851 facilitate?
CVE-2013-0851 facilitates a remote code execution attack via out-of-bounds array access due to crafted video data.
Is CVE-2013-0851 still a threat if I'm running the latest version of FFmpeg?
If you are running the latest version of FFmpeg, CVE-2013-0851 is not a threat as it has been patched in versions 1.1 and above.