CVE-2014-2263

The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and earlier, allows remote attackers to have unspecified impact and vectors, which trigger an out-of-bounds write.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ffmpeg:ffmpeg:2.0.3:*:*:*:*:*:*:*

History

21 Nov 2024, 02:05

Type Values Removed Values Added
References () http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=842b6c14bc - () http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=842b6c14bc -
References () http://secunia.com/advisories/56971 - Vendor Advisory () http://secunia.com/advisories/56971 - Vendor Advisory
References () http://www.securityfocus.com/bid/65560 - () http://www.securityfocus.com/bid/65560 -
References () http://www.securitytracker.com/id/1029850 - () http://www.securitytracker.com/id/1029850 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/91174 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/91174 -
References () https://security.gentoo.org/glsa/201603-06 - () https://security.gentoo.org/glsa/201603-06 -

07 Nov 2023, 02:19

Type Values Removed Values Added
References
  • {'url': 'http://git.videolan.org/?p=ffmpeg.git;a=commit;h=842b6c14bc', 'name': 'http://git.videolan.org/?p=ffmpeg.git;a=commit;h=842b6c14bc', 'tags': ['Patch'], 'refsource': 'CONFIRM'}
  • () http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=842b6c14bc -

Information

Published : 2014-03-01 00:55

Updated : 2025-04-12 10:46


NVD link : CVE-2014-2263

Mitre link : CVE-2014-2263

CVE.ORG link : CVE-2014-2263


JSON object : View

Products Affected

ffmpeg

  • ffmpeg
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer