← Back

CVE-2014-5272

nvd nist
Published: Nov 3, 2014Modified: May 6, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

libavcodec/iff.c in FFMpeg before 1.1.14, 1.2.x before 1.2.8, 2.2.x before 2.2.7, and 2.3.x before 2.3.2 allows remote attackers to have unspecified impact via a crafted iff image, which triggers an out-of-bounds array access, related to the rgb8 and rgbn formats.

Affected (37)

Products: Ffmpeg: Ffmpeg
1 product
Ffmpeg
Configuration A
37 vulnerable
Vulnerable SoftwareAffected Versions
Ffmpeg
Up to 1.1.13
Version 1.1.10
Version 1.1.11
Version 1.1.12
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 1.1.6
Version 1.1.7
Version 1.1.8
Version 1.1.9
Version 1.1
Version 1.2.1
Version 1.2.3
Version 1.2.4
Version 1.2.5
Version 1.2.6
Version 1.2.7
Version 1.2
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0.4
Version 2.0.5
Version 2.0
Version 2.1.1
Version 2.1.2
Version 2.1.3
Version 2.1.4
Version 2.1.5
Version 2.1
Version 2.2.4
Version 2.2
Version 2.3.2
Version 2.3

Timeline

No history available yet.