SB2013112311 - Multiple vulnerabilities in ffmpeg.sourceforge.net FFmpeg
Published: November 23, 2013 Updated: October 12, 2021
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 3 secuirty vulnerabilities.
1) Buffer overflow (CVE-ID: CVE-2013-4263)
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
libavfilter in FFmpeg before 2.0.1 has unspecified impact and remote vectors related to a crafted "plane," which triggers an out-of-bounds heap write.
2) Buffer overflow (CVE-ID: CVE-2013-4264)
The vulnerability allows a remote non-authenticated attacker to perform service disruption.
The kempf_decode_tile function in libavcodec/g2meet.c in FFmpeg before 2.0.1 allows remote attackers to cause a denial of service (out-of-bounds heap write) via a G2M4 encoded file.
3) NULL pointer dereference (CVE-ID: CVE-2013-4265)
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error in libavutil/mem.c in FFmpeg before 2.0.1 has an unspecified impact and remote vectors related to a "wrong return code" and a resultant NULL pointer dereference. http://cwe.mitre.org/data/definitions/476. A remote attacker can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- http://www.ffmpeg.org/security.html
- http://www.openwall.com/lists/oss-security/2013/08/21/11
- https://github.com/FFmpeg/FFmpeg/commit/e43a0a232dbf6d3c161823c2e07c52e76227a1bc
- https://security.gentoo.org/glsa/201603-06
- https://github.com/FFmpeg/FFmpeg/commit/2960576378d17d71cc8dccc926352ce568b5eec1
- https://trac.ffmpeg.org/ticket/2842
- https://github.com/FFmpeg/FFmpeg/commit/c94f9e854228e0ea00e1de8769d8d3f7cab84a55