The cavs_idct8_add_c function in libavcodec/cavsdsp.c in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when decoding with cavs_decode. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-7502