Skip to main content

Out-of-bounds Write

CVE-2014-125002

Severity Medium
Score 5.5/10

Summary

A vulnerability was found in FFmpeg before 0.7.17, 0.8 before 0.9.4, 0.10 before 0.10.12, 0.11-dev before 0.11.5, 0.12-dev before 1.0.9, 1.1-dev before 1.1.9, 1.2-dev before 1.2.6, 1.3-dev before 2.0.4, 2.1-dev before 2.1.4, and 2.2-dev. It has been classified as problematic. Affected is the function dnxhd_init_rc of the file "libavcodec/dnxhdenc.c". The manipulation leads to memory corruption. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue.

  • LOW
  • LOCAL
  • NONE
  • UNCHANGED
  • REQUIRED
  • NONE
  • NONE
  • HIGH

CWE-787 - Out-of-Bounds Write

Out-of-bounds write vulnerability is a memory access bug that allows software to write data past the end or before the beginning of the intended buffer. This may result in the corruption of data, a crash, or arbitrary code execution.

References

Advisory Timeline

  • Published