The MoofParser::Metadata function in binding/MoofParser.cpp in libstagefright in Mozilla Firefox before 44.0 does not limit the size of read operations, which might allow remote attackers to cause a denial of service (integer overflow and buffer overflow) or possibly have unspecified other impact via crafted metadata.
References
Information
Published : 2016-01-31 10:59
Updated : 2018-10-30 09:27
NVD link : CVE-2016-1946
Mitre link : CVE-2016-1946
JSON object : View
CWE
Products Affected
mozilla
- firefox
opensuse
- opensuse
- leap