6.8
CVSSv2

CVE-2015-3417

Published: 24/04/2015 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg prior to 2.3.6 allows remote malicious users to cause a denial of service or possibly have unspecified other impact via crafted H.264 data in an MP4 file, as demonstrated by an HTML VIDEO element that references H.264 data.

Vulnerable Product Search on Vulmon Subscribe to Product

ffmpeg ffmpeg

debian debian linux 8.0

Vendor Advisories

Several security issues have been corrected in multiple demuxers and decoders of the libav multimedia library A full list of the changes is available at gitlibavorg/?p=libavgit;a=blob;f=Changelog;hb=refs/tags/v114 For the stable distribution (jessie), these problems have been fixed in version 6:114-1~deb8u1 For the testing distribut ...