← Back

CVE-2011-2160

nvd nist
Published: May 20, 2011Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.

Affected (19)

1 product
Ffmpeg
1 product
Mplayer
Configuration A
19 vulnerable
Vulnerable SoftwareAffected Versions
Ffmpeg
Up to 0.5.3
Version 0.3.1
Version 0.3.2
Version 0.3.3
Version 0.3.4
Version 0.3
Version 0.4.0
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.4.5
Version 0.4.6
Version 0.4.7
Version 0.4.8
Version 0.4.9 pre1
Version 0.5.1
Version 0.5.2
Version 0.5
All versions

References (4)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.