← Back

CVE-2014-8549

nvd nist
Published: Nov 5, 2014Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

libavcodec/on2avc.c in FFmpeg before 2.4.2 does not constrain the number of channels to at most 2, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted On2 data.

Affected (105)

Products: Ffmpeg: Ffmpeg
1 product
Ffmpeg
Configuration A
105 vulnerable
Vulnerable SoftwareAffected Versions
Ffmpeg
Up to 2.4.1
Version 0.10.3
Version 0.10.4
Version 0.10
Version 0.11.1
Version 0.11.2
Version 0.11.3
Version 0.11.4
Version 0.11
Version 0.3.1
Version 0.3.2
Version 0.3.3
Version 0.3.4
Version 0.3
Version 0.4.0
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.4.5
Version 0.4.6
Version 0.4.7
Version 0.4.8
Version 0.4.9 pre1
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.5.4.5
Version 0.5.4.6
Version 0.5.4
Version 0.5.5
Version 0.5
Version 0.6.1
Version 0.6.2
Version 0.6.3
Version 0.6
Version 0.7.11
Version 0.7.12
Version 0.7.1
Version 0.7.2
Version 0.7.3
Version 0.7.4
Version 0.7.5
Version 0.7.6
Version 0.7.7
Version 0.7.8
Version 0.7.9
Version 0.7
Version 0.8.0
Version 0.8.10
Version 0.8.11
Version 0.8.1
Version 0.8.2
Version 0.8.5.3
Version 0.8.5.4
Version 0.8.5
Version 0.8.6
Version 0.8.7
Version 0.8.8
Version 0.9.1
Version 0.9
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.0
Version 1.1.10
Version 1.1.11
Version 1.1.12
Version 1.1.13
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 1.1.6
Version 1.1.7
Version 1.1.8
Version 1.1.9
Version 1.1
Version 1.2.1
Version 1.2.3
Version 1.2.4
Version 1.2.5
Version 1.2.6
Version 1.2.7
Version 1.2
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0.4
Version 2.0.5
Version 2.0
Version 2.1.1
Version 2.1.2
Version 2.1.3
Version 2.1.4
Version 2.1.5
Version 2.1
Version 2.2.4
Version 2.2
Version 2.3.2
Version 2.3.3
Version 2.3.4
Version 2.3
Version 2.4

Related CWEs

Timeline

No history available yet.