CVE-2012-0852
Publication date 14 February 2012
Last updated 24 July 2024
Ubuntu priority
The adpcm_decode_frame function in adpcm.c in libavcodec in FFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.6, and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an ADPCM file with the number of channels not equal to two.
Status
Package | Ubuntu Release | Status |
---|---|---|
ffmpeg | ||
ffmpeg-extra | ||
libav | ||
libav-extra | ||
Notes
mdeslaur
as of 2012-05-22, no equivalent fix in libav as of 2012-05-22, no equivalent fix in ffmpeg 0.5.x
Patch details
Package | Patch details |
---|---|
ffmpeg | |
libav |
References
Related Ubuntu Security Notices (USN)
- USN-1478-1
- Libav vulnerabilities
- 18 June 2012
- USN-1479-1
- FFmpeg vulnerabilities
- 18 June 2012