Description
The rle_unpack function in vmdav.c in libavcodec in FFmpeg git 20130328 through 20130501 does not properly use the bytestream2 API, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) via crafted RLE data. NOTE: the vendor has listed this as an issue fixed in 1.2.1, but the issue is actually in new code that was not shipped with the 1.2.1 release or any earlier release.
References (3)
Core 3
Core References
Patch x_refsource_confirm
http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=0baa0a5a02e16ef097ed9f72bc8a7d7b585c7652
Patch x_refsource_confirm
http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=c1f2c4c3b49277d65b71ccdd3b6b2878f1b593eb
Various Sources x_refsource_misc
http://ffmpeg.org/security.html
Scores
EPSS
0.0050
EPSS Percentile
66.2%
Details
CWE
CWE-119
Status
published
Products (1)
ffmpeg/ffmpeg
< 1.2
Published
Jun 10, 2013
Tracked Since
Feb 18, 2026