漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
FFmpeg 2.7 - 8.1.2 Out-of-Bounds Write in TDSC Video Decoder
Vulnerability Description
FFmpeg versions 2.7 through 8.1.2 contain an out-of-bounds write vulnerability in the TDSC video decoder that allows remote attackers to cause heap corruption by supplying a crafted AVI file that changes frame dimensions across TDSF frames. The tdsc_parse_tdsf() function fails to unreference the existing reference frame before calling av_frame_get_buffer(), causing tdsc_blit() and tdsc_yuv2rgb() to write attacker-controlled pixel data beyond the end of the undersized reference frame buffer, resulting in a process crash and potential code execution.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
跨界内存写
Vulnerability Title
FFmpeg 缓冲区错误漏洞
Vulnerability Description
FFmpeg是FFmpeg组织开源的一套可录制、转换以及流化音视频的完整解决方案。 FFmpeg 2.7版本至8.1.2版本存在缓冲区错误漏洞,该漏洞源于TDSC视频解码器中的越界写入,tdsc_parse_tdsf()函数在调用av_frame_get_buffer()之前未能取消引用现有参考帧,导致tdsc_blit()和tdsc_yuv2rgb()将攻击者控制的像素数据写入超出小型参考帧缓冲区的末尾,可能允许远程攻击者通过提供特制的AVI文件造成堆损坏,导致进程崩溃并可能执行代码。
CVSS Information
N/A
Vulnerability Type
N/A