VDB

DEBIAN-CVE-2015-3417

DEBIAN-CVE-2015-3417 PUBLISHED CVSS 9.300000190734863 CRITICAL

Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted H.264 data in an MP4 file, as demonstrated by an HTML VIDEO element that references H.264 data.

Risk Scores

CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:12ffmpeg0, 0, 0
Debian:14ffmpeg0, 0, 0
Debian:13ffmpeg0, 0, 0
Debian:11ffmpeg0, 0, 0

Timeline

  • Apr 24, 2015 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›