vulnerability
SUSE: CVE-2019-11338: SUSE Linux Security Advisory
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Apr 18, 2019 | Jan 15, 2020 | Feb 4, 2022 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Apr 18, 2019
Added
Jan 15, 2020
Modified
Feb 4, 2022
Description
libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.
Solutions
suse-upgrade-ffmpeg-4-libavcodec-develsuse-upgrade-ffmpeg-4-libavdevice-develsuse-upgrade-ffmpeg-4-libavfilter-develsuse-upgrade-ffmpeg-4-libavformat-develsuse-upgrade-ffmpeg-4-libavresample-develsuse-upgrade-ffmpeg-4-libavutil-develsuse-upgrade-ffmpeg-4-libpostproc-develsuse-upgrade-ffmpeg-4-libswresample-develsuse-upgrade-ffmpeg-4-libswscale-develsuse-upgrade-ffmpeg-4-private-develsuse-upgrade-libavcodec58suse-upgrade-libavcodec58-32bitsuse-upgrade-libavcodec58-64bitsuse-upgrade-libavdevice58suse-upgrade-libavdevice58-32bitsuse-upgrade-libavdevice58-64bitsuse-upgrade-libavfilter7suse-upgrade-libavfilter7-32bitsuse-upgrade-libavfilter7-64bitsuse-upgrade-libavformat58suse-upgrade-libavformat58-32bitsuse-upgrade-libavformat58-64bitsuse-upgrade-libavresample4suse-upgrade-libavresample4-32bitsuse-upgrade-libavresample4-64bitsuse-upgrade-libavutil56suse-upgrade-libavutil56-32bitsuse-upgrade-libavutil56-64bitsuse-upgrade-libpostproc55suse-upgrade-libpostproc55-32bitsuse-upgrade-libpostproc55-64bitsuse-upgrade-libswresample3suse-upgrade-libswresample3-32bitsuse-upgrade-libswresample3-64bitsuse-upgrade-libswscale5suse-upgrade-libswscale5-32bitsuse-upgrade-libswscale5-64bit
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.