Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The mov_read_dref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via the entries value in a dref box in an MP4 file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libav 拒绝服务漏洞
Vulnerability Description
Libav(前身是FFmpeg)是Libav团队的一套跨平台的可对音频和视频进行录制、转换的解决方案,它包含了一个libavcodec编码器。FFmpeg是FFmpeg团队的一套可录制、转换以及流化音视频的完整解决方案。 Libav 11.7之前版本和Ffmpeg 0.11之前版本的libavformat/mov.c文件中的‘mov_read_dref’函数存在安全漏洞。远程攻击者可借助MP4文件中的dref盒中特制的条目值利用该漏洞造成拒绝服务(内存损坏),或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A