Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2015-6826

Published: 5 September 2015

The ff_rv34_decode_init_thread_copy function in libavcodec/rv34.c in FFmpeg before 2.7.2 does not initialize certain structure members, which allows remote attackers to cause a denial of service (invalid pointer access) or possibly have unspecified other impact via crafted (1) RV30 or (2) RV40 RealVideo data.

Notes

AuthorNote
mdeslaur
as of 2014-03-31, no equivalent fix in libav
ebarretto
as of 2018-09-27, no equivalent fix in libav, except for
libav 0.8

Priority

Low

Status

Package Release Status
ffmpeg
Launchpad, Ubuntu, Debian
artful Not vulnerable
(7:2.8.3-1)
bionic Not vulnerable
(7:2.8.3-1)
precise Does not exist

trusty Does not exist

upstream Needs triage

vivid Not vulnerable
(7:2.5.9-0ubuntu0.15.04.1)
wily Not vulnerable
(7:2.7.3-0ubuntu0.15.10.1)
xenial Not vulnerable
(7:2.8.3-1)
yakkety Not vulnerable
(7:2.8.3-1)
zesty Not vulnerable
(7:2.8.3-1)
Patches:
upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=3197c0aa87a3b7190e17d49e6fbc7b554e4b3f0a
libav
Launchpad, Ubuntu, Debian
artful Does not exist

bionic Does not exist

precise Does not exist
(precise was released [4:0.8.17-0ubuntu0.12.04.2])
trusty Ignored

upstream Needs triage

vivid Ignored
(reached end-of-life)
wily Does not exist

xenial Does not exist

yakkety Does not exist

zesty Does not exist