CVE-2013-0872: Buffer Overflow
The swrinit function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via an invalid or unsupported (1) input or (2) output channel layout, related to an out-of-bounds array access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0872?
CVE-2013-0872 has been classified as a medium severity vulnerability due to its potential for out-of-bounds array access.
How do I fix CVE-2013-0872?
To fix CVE-2013-0872, you should update your FFmpeg installation to version 1.1.3 or later.
What versions of FFmpeg are affected by CVE-2013-0872?
CVE-2013-0872 affects FFmpeg versions before 1.1.3, including multiple earlier versions.
What is the nature of the vulnerability CVE-2013-0872?
CVE-2013-0872 involves the swr_init function in FFmpeg, allowing attackers to exploit invalid input or output channel layouts.
Is CVE-2013-0872 remotely exploitable?
Yes, CVE-2013-0872 can be exploited by remote attackers, making it a significant security risk.