CVE-2012-2802 PUBLISHED CVSS 10 CRITICAL

Unspecified vulnerability in the ac3_decode_frame function in libavcodec/ac3dec.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8.4 has unknown impact and attack vectors, related to the "number of output channels" and "out of array writes."

EPSS 0.86% · 74.9th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
0.86%
74.9th percentile

Affected Products

VendorProductVersions
ffmpegffmpeg0.10.3, 0.8.8, 0.8.10
libavlibav0.8, 0.8, 0.8.1
n/an/an/a

Timeline

References

Open in Interactive Console →