The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and earlier, allows remote attackers to have unspecified impact and vectors, which trigger an out-of-bounds write.
http://git.videolan.org/?p=ffmpeg.git;a=commit;h=842b6c14bc
http://secunia.com/advisories/56971
http://www.securityfocus.com/bid/65560
http://www.securitytracker.com/id/1029850
OR
cpe:2.3:a:ffmpeg:ffmpeg:2.0:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:* versions up to 2.1 (inclusive)
ID | Name | Product | Family | Severity |
---|---|---|---|---|
89899 | GLSA-201603-06 : FFmpeg: Multiple vulnerabilities | Nessus | Gentoo Local Security Checks | critical |
82449 | Mandriva Linux Security Advisory : ffmpeg (MDVSA-2015:173) | Nessus | Mandriva Local Security Checks | high |
77122 | Debian DSA-3003-1 : libav - security update | Nessus | Debian Local Security Checks | high |
76437 | Mandriva Linux Security Advisory : ffmpeg (MDVSA-2014:129) | Nessus | Mandriva Local Security Checks | critical |