The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 2.3 and 3.4 does not properly validate widths and heights, which allows remote attackers to cause a denial of service (integer signedness error and out-of-array read) via a crafted MPEG file.
References
Configurations
Information
Published : 2017-11-30 13:29
Updated : 2021-01-05 11:15
NVD link : CVE-2017-17081
Mitre link : CVE-2017-17081
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
ffmpeg
- ffmpeg