CVE Vulnerabilities

CVE-2012-6617

Published: Dec 24, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (crash) via vectors related to the rtp format.

Affected Software

NameVendorStart VersionEnd Version
FfmpegFfmpeg*1.0.1 (including)
FfmpegFfmpeg1.0 (including)1.0 (including)
Chromium-browserUbuntutrusty*
Chromium-browserUbuntuupstream*
Gst-libav1.0Ubuntubionic*
Gst-libav1.0Ubuntufocal*
Gst-libav1.0Ubuntugroovy*
Gst-libav1.0Ubuntuhirsute*
Gst-libav1.0Ubuntuimpish*
Gst-libav1.0Ubuntukinetic*
Gst-libav1.0Ubuntulunar*
Gst-libav1.0Ubuntumantic*
Gst-libav1.0Ubuntuoracular*
Gst-libav1.0Ubuntuplucky*
Gst-libav1.0Ubuntutrusty*
Gst-libav1.0Ubuntuxenial*
Gstreamer0.10-ffmpegUbuntutrusty*
LibavUbuntutrusty*
LibavUbuntutrusty/esm*
LibavUbuntuupstream*
MythtvUbuntubionic*
MythtvUbuntufocal*
MythtvUbuntugroovy*
MythtvUbuntuhirsute*
MythtvUbuntuimpish*
MythtvUbuntukinetic*
MythtvUbuntulunar*
MythtvUbuntumantic*
MythtvUbuntuoracular*
MythtvUbuntuplucky*
MythtvUbuntutrusty*
MythtvUbuntuxenial*
Oxide-qtUbuntutrusty*
Oxide-qtUbuntuxenial*
Qtwebengine-opensource-srcUbuntubionic*
Qtwebengine-opensource-srcUbuntufocal*
Qtwebengine-opensource-srcUbuntugroovy*
Qtwebengine-opensource-srcUbuntuhirsute*
Qtwebengine-opensource-srcUbuntuimpish*
Qtwebengine-opensource-srcUbuntukinetic*
Qtwebengine-opensource-srcUbuntulunar*
Qtwebengine-opensource-srcUbuntumantic*
Qtwebengine-opensource-srcUbuntuoracular*
Qtwebengine-opensource-srcUbuntuplucky*
Qtwebengine-opensource-srcUbuntutrusty*

References