Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FFmpeg LibAVCodec堆溢出漏洞
Vulnerability Description
FFmpeg是一套对音频和视频进行解码录制转换的完整的方案。 FFmpeg在处理小图像时存在溢出漏洞,攻击者可能利用此漏洞在主机上执行任意指令。 FFmpeg的libavcodec库在解码很小的(如1x1)PIX_FMT_PAL8格式图形时存在堆溢出漏洞。get_buffer函数avcodec_default_get_buffer不能为palette项分配足够的空间,因此如果将palette数据拷贝到了data[1]数组中,就会溢出堆缓冲区,导致分段错误。攻击者可以诱骗用户使用调用有漏洞版本libavco
CVSS Information
N/A
Vulnerability Type
N/A