CVE-2014-9676

The seg_write_packet function in libavformat/segment.c in ffmpeg 2.1.4 and earlier does not free the correct memory location, which allows remote attackers to cause a denial of service ("invalid memory handler") and possibly execute arbitrary code via a crafted video that triggers a use after free.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-02-28 01:59

Updated : 2016-11-30 02:59


NVD link : CVE-2014-9676

Mitre link : CVE-2014-9676

CVE.ORG link : CVE-2014-9676


JSON object : View

Products Affected

ffmpeg

  • ffmpeg