First published: Sun Jun 19 2022(Updated: )
A vulnerability was found in FFmpeg 2.0. It has been classified as problematic. Affected is the function shorten_decode_frame of the component Bitstream Buffer. The manipulation leads to memory corruption. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg FFmpeg | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2014-125022 is medium with a CVSS score of 5.5.
If you are using FFmpeg version 2.0, you may be affected by CVE-2014-125022.
To mitigate the vulnerability, apply the provided patch from the official FFmpeg website.
Yes, CVE-2014-125022 can be exploited remotely.
The CWE ID for CVE-2014-125022 is CWE-787 and CWE-119.