7.8
CVSSv3

CVE-2016-7502

Published: 23/12/2016 Updated: 01/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The cavs_idct8_add_c function in libavcodec/cavsdsp.c in FFmpeg prior to 3.1.4 is vulnerable to reading out-of-bounds memory when decoding with cavs_decode.

Vulnerable Product Search on Vulmon Subscribe to Product

ffmpeg ffmpeg

Vendor Advisories

Debian Bug report logs - #840434 ffmpeg: CVE-2016-7122 CVE-2016-7450 CVE-2016-7502 CVE-2016-7555 CVE-2016-7562 CVE-2016-7785 CVE-2016-7905 Package: src:ffmpeg; Maintainer for src:ffmpeg is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tu ...