First published: Fri Apr 14 2017(Updated: )
FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in libavcodec/pictordec.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg | <=2.8.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7862 has a high severity rating due to its potential for causing a denial of service or remote code execution.
To fix CVE-2017-7862, upgrade FFmpeg to version 2.8.11 or later.
CVE-2017-7862 is classified as a heap-based buffer overflow vulnerability.
FFmpeg versions prior to 2.8.11 are affected by CVE-2017-7862.
CVE-2017-7862 impacts the decode_frame function within libavcodec, specifically in pictordec.c.