CVE-2016-3062

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The mov_read_dref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via the entries value in a dref box in an MP4 file.

References

http://lists.opensuse.org/opensuse-updates/2016-06/msg00105.html

http://www.debian.org/security/2016/dsa-3603

https://bugzilla.libav.org/show_bug.cgi?id=929

https://ffmpeg.org/security.html

https://git.libav.org/?p=libav.git;a=commit;h=7e01d48cfd168c3dfc663f03a3b6a98e0ecba328

https://github.com/FFmpeg/FFmpeg/commit/689e59b7ffed34eba6159dcc78e87133862e3746

https://libav.org/releases/libav-11.7.changelog

https://security.gentoo.org/glsa/201705-08

Details

Source: MITRE

Published: 2016-06-16

Updated: 2018-10-30

Type: CWE-119

Risk Information

CVSS v2

Base Score: 6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 2.8

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:libav:libav:*:*:*:*:*:*:*:* versions up to 11.6 (inclusive)

Configuration 2

OR

cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:* versions up to 0.10.15 (inclusive)

Configuration 3

OR

cpe:2.3:o:debian:debian_linux:*:*:*:*:*:*:*:* versions up to 8.0 (inclusive)

Configuration 4

OR

cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*

Tenable Plugins

View all (4 total)

IDNameProductFamilySeverity
100085GLSA-201705-08 : libav: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
91870openSUSE Security Update : libav (openSUSE-2016-779)NessusSuSE Local Security Checks
high
91616Debian DSA-3603-1 : libav - security updateNessusDebian Local Security Checks
high
91613Debian DLA-515-1 : libav security updateNessusDebian Local Security Checks
high