CVE-2011-3362
Publication date 15 September 2011
Last updated 24 July 2024
Ubuntu priority
Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8.x before 0.8.2, and libav through 0.7.1, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Chinese AVS video (aka CAVS) file.
Status
Package | Ubuntu Release | Status |
---|---|---|
ffmpeg | ||
ffmpeg-extra | ||
libav | ||
libav-extra | ||
Notes
Patch details
References
Related Ubuntu Security Notices (USN)
- USN-1209-1
- FFmpeg vulnerabilities
- 19 September 2011
- USN-1209-2
- Libav vulnerabilities
- 19 September 2011