CVE-2011-2160
Publication date 20 May 2011
Last updated 24 July 2024
Ubuntu priority
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.
Status
Package | Ubuntu Release | Status |
---|---|---|
ffmpeg | ||
ffmpeg-extra | ||
libav | ||
libav-extra | ||
Notes
mdeslaur
ffmpeg-extra in multiverse needs to have matching version we already fixed this as part of CVE-2011-0723
Patch details
Package | Patch details |
---|---|
ffmpeg |