Description


Integer overflow vulnerability in av_timecode_make_string in libavutil/timecode.c in FFmpeg version 4.3.2, allows local attackers to cause a denial of service (DoS) via crafted .mov file.

Related CPE's


Weaknesses



CWE-190

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

5.5 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-08-11T12:15:12.667Z

2 years ago

Last modified

2024-11-21T04:59:39.430Z

1 year ago