CVE-2017-11399

Integer overflow in the ape_decode_frame function in libavcodec/apedec.c in FFmpeg 2.4 through 3.3.2 allows remote attackers to cause a denial of service (out-of-array access and application crash) or possibly have unspecified other impact via a crafted APE file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-07-17 19:29

Updated : 2021-01-04 22:15


NVD link : CVE-2017-11399

Mitre link : CVE-2017-11399

CVE.ORG link : CVE-2017-11399


JSON object : View

Products Affected

ffmpeg

  • ffmpeg
CWE
CWE-125

Out-of-bounds Read