CVE-2023-51793: Buffer Overflow
Published Apr 19, 2024
·Updated
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavutil/imgutils.c:353:9 in imagecopyplane.
Affected Software
16 affected componentsFixes available
ubuntu/ffmpeg<7:4.4.2-0ubuntu0.22.04.1+
7:4.4.2-0ubuntu0.22.04.1+
ubuntu/ffmpeg<7:6.0-6ubuntu1.1
7:6.0-6ubuntu1.1
debian/ffmpeg<=7:4.3.6-0+deb11u1, <=7:6.1.1-4, <=7:6.1.1-5
7:4.3.7-0+deb11u17:5.1.5-0+deb12u1
FFmpeg FFmpeg=7.0
FFmpeg FFmpeg=7.0.1
FFmpeg FFmpeg=7.0.2
FFmpeg FFmpeg=7.0.3
FFmpeg FFmpeg=7.1
FFmpeg FFmpeg=7.1-dev
FFmpeg FFmpeg=7.1.1
FFmpeg FFmpeg=7.1.2
FFmpeg FFmpeg=7.1.3
FFmpeg FFmpeg=7.2-dev
FFmpeg FFmpeg=8.0
FFmpeg FFmpeg=8.0.1
FFmpeg FFmpeg=8.1-dev
Event History
Apr 19, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
Affected Software
Jun 27, 2024
Data Sourced
via Launchpad·07:04 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-51793?
CVE-2023-51793 is classified as a high severity buffer overflow vulnerability.
2
How do I fix CVE-2023-51793?
To fix CVE-2023-51793, update Ffmpeg to version 7:4.4.2-0ubuntu0.22.04.1+ or 7:6.0-6ubuntu1.1 or a later version.
3
Who is affected by CVE-2023-51793?
CVE-2023-51793 affects users of specific versions of Ffmpeg, especially those on Ubuntu and Debian systems.
4
What can attackers do with CVE-2023-51793?
Attackers exploiting CVE-2023-51793 can execute arbitrary code on the target system.
5
What components are involved in CVE-2023-51793?
CVE-2023-51793 involves a buffer overflow vulnerability in the libavutil/imgutils.c component of Ffmpeg.