CVE-2013-0867 Information

Description

The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1.2 does not properly check when the pixel format changes which allows remote attackers to have unspecified impact via crafted H.264 video data related to an out-of-bounds array access.

Reference

http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=3ef1538121fa6daeb1767510f1d4ae2c306c9fec http://www.ffmpeg.org/security.html https://security.gentoo.org/glsa/201603-06

Share on: