CVE Vulnerabilities

CVE-2012-2803

Published: Sep 10, 2012 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Double free vulnerability in the mpeg_decode_frame function in libavcodec/mpeg12.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, has unknown impact and attack vectors, related to resetting the data size value.

Affected Software

Name Vendor Start Version End Version
Libav Libav 0.8 (including) 0.8 (including)
Libav Libav 0.8-beta2 (including) 0.8-beta2 (including)
Libav Libav 0.8.1 (including) 0.8.1 (including)
Libav Libav 0.8.2 (including) 0.8.2 (including)
Libav Libav 0.8.3 (including) 0.8.3 (including)
Libav Libav 0.8.4 (including) 0.8.4 (including)
Ffmpeg Ubuntu hardy *
Ffmpeg Ubuntu lucid *
Ffmpeg Ubuntu upstream *
Ffmpeg-extra Ubuntu lucid *
Libav Ubuntu devel *
Libav Ubuntu natty *
Libav Ubuntu oneiric *
Libav Ubuntu precise *
Libav Ubuntu quantal *
Libav Ubuntu upstream *
Libav-extra Ubuntu devel *
Libav-extra Ubuntu natty *
Libav-extra Ubuntu oneiric *
Libav-extra Ubuntu precise *
Libav-extra Ubuntu quantal *
Libav-extra Ubuntu upstream *

References