CVE-2023-51795: Buffer Overflow
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avfshowspectrum.c:1789:52 component in showspectrumpicrequestframe
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-51795?
CVE-2023-51795 is classified as a high severity buffer overflow vulnerability that allows local attackers to execute arbitrary code.
How do I fix CVE-2023-51795?
To fix CVE-2023-51795, users should upgrade to fixed versions of FFmpeg, specifically 7:6.0-6ubuntu1.1 for Ubuntu or versions like 7:4.3.6-0+deb11u1 for Debian.
Who is affected by CVE-2023-51795?
CVE-2023-51795 affects specific versions of the FFmpeg package in Ubuntu and Debian distributions.
What component is responsible for CVE-2023-51795?
CVE-2023-51795 is associated with the showspectrumpic_request_frame function in the libavfilter/avf_showspectrum.c component.
Can CVE-2023-51795 be exploited remotely?
CVE-2023-51795 requires local access for exploitation, which limits its potential impact as a remote vulnerability.