MEDIUM
FFmpeg msrle.c msrle_decode_frame memory corruption
Published Jun 18, 2022
5.5
MEDIUMCVSS 3.1
EPSS 0.68%
Description
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the function msrle_decode_frame of the file libavcodec/msrle.c. The manipulation leads to memory corruption. The attack may be initiated remotely. It is recommended to apply a patch to fix this issue.
Affected products
- Vendor n/a Product FFmpeg Defaultn/a
- Version 2.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | FFmpeg | n/a |
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (3)
- http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=c919e1ca2ecfc47d796382973ba0e48b8f6f92a2 x_refsource_MISC
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2014-1187 Advisory
- https://vuldb.com/?id.12389 x_refsource_MISCThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=c919e1ca2ecfc47d796382973ba0e48b8f6f92a2 | x_refsource_MISC | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2014-1187 | Advisory | |
| https://vuldb.com/?id.12389 | x_refsource_MISCThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Jun 18, 2022
Updated Apr 15, 2025
Reserved Jun 17, 2022
Link CVE-2014-125013
CISA Vulnrichment
Updated Apr 14, 2025
ENISA EUVD
EUVD-2014-1187 Assigner VulDB
Published Jun 18, 2022
Updated Apr 15, 2025
Exploited since n/a
Link EUVD-2014-1187