CVE-2013-0864 PUBLISHED CVSS 10 CRITICAL

The gif_copy_img_rect function in libavcodec/gifdec.c in FFmpeg before 1.1.2 performs an incorrect calculation for an "end pointer," which allows remote attackers to have an unspecified impact via crafted GIF data that triggers an out-of-bounds array access.

EPSS 1.43% · 80.5th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
1.43%
80.5th percentile

Affected Products

VendorProductVersions
ffmpegffmpeg1.0, 0, 0.3
n/an/an/a

Timeline

References

Open in Interactive Console →