Wind River Support Network

HomeDefectsLIN8-3072
Fixed

LIN8-3072 : Security Advisory - gst-ffmpeg - CVE-2014-9317

Created: Mar 16, 2016    Updated: Dec 3, 2018
Resolved Date: Mar 20, 2016
Previous ID: LIN7-5817
Found In Version: 8.0.0.2
Fix Version: 8.0.0.4
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via an IDAT before an IHDR in a PNG file.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-9317

Other Downloads


Live chat
Online