Bug#675767: src:libav: check CVE-2011-4031 (integer underflow in asfrtp_parse_packet)

Helmut Grohne helmut at subdivi.de
Sun Jun 3 09:11:00 UTC 2012


Package: src:libav
Version: 6:0.8.2-2
Severity: important
Tags: security

Dear multimedia maintainers,

Please determine whether libav is affected by CVE-2011-4031:

| Integer underflow in the asfrtp_parse_packet function in
| libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers
| to execute arbitrary code via a crafted ASF packet.

Thanks

Helmut





More information about the pkg-multimedia-maintainers mailing list