CVE-2012-2794 PUBLISHED CVSS 10 CRITICAL

Unspecified vulnerability in the decode_mb_info function in libavcodec/indeo5.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors in which the "allocated tile size ... mismatches parameters."

EPSS 0.84% · 74.6th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
0.84%
74.6th percentile

Affected Products

VendorProductVersions
n/an/an/a
ffmpegffmpeg0.10.3, 0.8.0, 0.8.1
libavlibav0.7, 0.7, 0.7.1

Timeline

References

Open in Interactive Console →