CVE-2011-3952
Gentoo Linux Security Advisory 201310-12
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The decode_init function in kmvc.c in libavcodec in FFmpeg before 0.10 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.6, and 0.8.x before 0.8.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large palette size in a KMVC encoded file.
La función decode_init en kmvc.c en libavcodec de FFmpeg antes de v0.10 y en Libav v0.5.x antes de v0.5.9, v0.6.x antes de v0.6.6, v0.7.x antes de v0.7.6, y v0.8.x antes de v0.8.1 permite provocar una denegación de servicio (por caída de la aplicación) y posiblemente ejecutar código de su elección a atacantes remotos a través de un tamaño de paleta demasiado grande en un archivo KMVC codificado.
Multiple vulnerabilities were found in FFmpeg, the worst of which might enable remote attackers to cause user-assisted execution of arbitrary code. Versions less than 1.0.7 are affected.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-10-01 CVE Reserved
- 2012-08-20 CVE Published
- 2024-09-16 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://ffmpeg.org | X_refsource_confirm | |
http://git.libav.org/?p=libav.git%3Ba=commit%3Bh=386741f887714d3e46c9e8fe577e326a7964037b | X_refsource_confirm | |
http://libav.org | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.debian.org/security/2012/dsa-2494 | 2023-11-07 | |
http://www.ubuntu.com/usn/USN-1479-1 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | <= 0.9.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version " <= 0.9.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.3 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.3" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.3.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.3.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.3.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.3.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.3.3 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.3.3" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.3.4 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.3.4" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.0 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.0" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.3 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.3" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.4 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.4" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.5 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.5" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.6 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.6" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.7 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.7" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.8 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.8" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.9 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.9" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.4.9 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.4.9" | pre1 |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.5 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.5" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.5.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.5.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.5.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.5.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.5.3 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.5.3" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.5.4 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.5.4" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.6 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.6" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.6.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.6.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.6.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.6.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.3 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.3" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.6 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.6" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.7 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.7" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.8 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.8" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.9 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.9" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.11 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.11" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.7.12 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.7.12" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.0 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.0" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.1 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.1" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.2 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.2" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.5 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.5" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.6 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.6" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.7 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.7" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.8 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.8" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.10 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.10" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.8.11 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.8.11" | - |
Affected
| ||||||
Ffmpeg Search vendor "Ffmpeg" | Ffmpeg Search vendor "Ffmpeg" for product "Ffmpeg" | 0.9 Search vendor "Ffmpeg" for product "Ffmpeg" and version "0.9" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.5 Search vendor "Libav" for product "Libav" and version "0.5" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.5.1 Search vendor "Libav" for product "Libav" and version "0.5.1" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.5.2 Search vendor "Libav" for product "Libav" and version "0.5.2" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.5.3 Search vendor "Libav" for product "Libav" and version "0.5.3" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.6 Search vendor "Libav" for product "Libav" and version "0.6" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.6.1 Search vendor "Libav" for product "Libav" and version "0.6.1" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.6.2 Search vendor "Libav" for product "Libav" and version "0.6.2" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.6.3 Search vendor "Libav" for product "Libav" and version "0.6.3" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7 Search vendor "Libav" for product "Libav" and version "0.7" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7 Search vendor "Libav" for product "Libav" and version "0.7" | beta1 |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7 Search vendor "Libav" for product "Libav" and version "0.7" | beta2 |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7.1 Search vendor "Libav" for product "Libav" and version "0.7.1" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7.2 Search vendor "Libav" for product "Libav" and version "0.7.2" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7.3 Search vendor "Libav" for product "Libav" and version "0.7.3" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7.4 Search vendor "Libav" for product "Libav" and version "0.7.4" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.7.5 Search vendor "Libav" for product "Libav" and version "0.7.5" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.8 Search vendor "Libav" for product "Libav" and version "0.8" | - |
Affected
| ||||||
Libav Search vendor "Libav" | Libav Search vendor "Libav" for product "Libav" | 0.8 Search vendor "Libav" for product "Libav" and version "0.8" | beta2 |
Affected
|