CVE-2015-1872
MEDIUM severity · CVSS 6.8 · Memory corruption
6.8CVSS MEDIUM
Summary
The ff_mjpeg_decode_sof function in libavcodec/mjpegdec.c in FFmpeg before 2.5.4 does not validate the number of components in a JPEG-LS Start Of Frame segment, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Motion JPEG data.
Impact & exploitability
Attack vectorNetwork
Attack complexity—
Privileges required—
User interaction—
Confidentiality impact—
Integrity impact—
Availability impact—
Exploit probability (EPSS)2%
AV:N/AC:M/Au:N/C:P/I:P/A:P
Affected products we track (1)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.
Additional information
- NVD record
- http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=fabbfaa095660982cc0bc63242c459561fa37037
- http://www.securityfocus.com/bid/72644Advisory
- http://www.securitytracker.com/id/1033078
- http://www.ubuntu.com/usn/USN-2944-1Advisory
- https://lists.debian.org/debian-lts-announce/2019/03/msg00041.html