CVE-2011-3947

Priority
Description
Buffer overflow in mjpegbdec.c in libavcodec in FFmpeg 0.7.x before 0.7.12
and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before
0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1, allows remote attackers
to cause a denial of service (crash) and possibly execute arbitrary code
via a crafted MJPEG-B file.
Notes
mdeslaurffmpeg-extra in multiverse needs to have matching version
libav-extra is built with tarball produced by libav package
Package
Upstream:released (0.5.9)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Patches:
Upstream:http://git.videolan.org/?p=ffmpeg.git;a=commit;h=b57d262412204e54a7ef8fa1b23ff4dcede622e5
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Package
Source: libav (LP Ubuntu Debian)
Upstream:released (0.6.6,0.7.5,0.8.1)
Ubuntu 12.04 ESM (Precise Pangolin):not-affected (4:0.8.1-0ubuntu2)
Patches:
Upstream:http://git.libav.org/?p=libav.git;a=commit;h=b57d262412204e54a7ef8fa1b23ff4dcede622e5
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):not-affected (4:0.8.1ubuntu1)
More Information

Updated: 2020-09-10 01:53:40 UTC (commit 81a23a978c4436cd99e1d040e9e73e9146876281)