CVE Vulnerabilities

CVE-2012-6617

Published: Dec 24, 2013 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (crash) via vectors related to the rtp format.

Affected Software

Name Vendor Start Version End Version
Ffmpeg Ffmpeg * 1.0.1 (including)
Ffmpeg Ffmpeg 1.0 (including) 1.0 (including)
Chromium-browser Ubuntu trusty *
Chromium-browser Ubuntu upstream *
Gst-libav1.0 Ubuntu bionic *
Gst-libav1.0 Ubuntu groovy *
Gst-libav1.0 Ubuntu hirsute *
Gst-libav1.0 Ubuntu impish *
Gst-libav1.0 Ubuntu kinetic *
Gst-libav1.0 Ubuntu lunar *
Gst-libav1.0 Ubuntu mantic *
Gst-libav1.0 Ubuntu trusty *
Gst-libav1.0 Ubuntu xenial *
Gstreamer0.10-ffmpeg Ubuntu trusty *
Libav Ubuntu trusty *
Libav Ubuntu upstream *
Mythtv Ubuntu bionic *
Mythtv Ubuntu groovy *
Mythtv Ubuntu hirsute *
Mythtv Ubuntu impish *
Mythtv Ubuntu kinetic *
Mythtv Ubuntu lunar *
Mythtv Ubuntu mantic *
Mythtv Ubuntu trusty *
Mythtv Ubuntu xenial *
Oxide-qt Ubuntu trusty *
Oxide-qt Ubuntu xenial *
Qtwebengine-opensource-src Ubuntu bionic *
Qtwebengine-opensource-src Ubuntu groovy *
Qtwebengine-opensource-src Ubuntu hirsute *
Qtwebengine-opensource-src Ubuntu impish *
Qtwebengine-opensource-src Ubuntu kinetic *
Qtwebengine-opensource-src Ubuntu lunar *
Qtwebengine-opensource-src Ubuntu mantic *
Qtwebengine-opensource-src Ubuntu trusty *
Vice Ubuntu bionic *
Vice Ubuntu groovy *
Vice Ubuntu hirsute *
Vice Ubuntu impish *
Vice Ubuntu kinetic *
Vice Ubuntu lunar *
Vice Ubuntu mantic *
Vice Ubuntu trusty *
Vice Ubuntu xenial *

References