CVE-2016-6164
published 2017-01-23CVE-2016-6164: Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers…
PriorityP343critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.75%
75.5th percentile
Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers to have unspecified impact via vectors involving sample size.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ffmpeg | < ffmpeg 7:3.1.1-1 (bookworm) | ffmpeg 7:3.1.1-1 (bookworm) |
| ffmpeg | ffmpeg | <= 2.8.7 | — |
| ffmpeg | ffmpeg | — | — |
| ffmpeg | ffmpeg | — | — |
| ffmpeg | ffmpeg | — | — |
| ffmpeg | ffmpeg | — | — |
| ffmpeg | ffmpeg | >= 0 < 7:3.1.1-1 | 7:3.1.1-1 |
| ffmpeg | ffmpeg | >= 0 < 7:3.1.1-1 | 7:3.1.1-1 |
| ffmpeg | ffmpeg | >= 0 < 7:3.1.1-1 | 7:3.1.1-1 |
| ffmpeg | ffmpeg | >= 0 < 7:3.1.1-1 | 7:3.1.1-1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2016-6164: ffmpeg - Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg ...
vendor_debian·2016·CVSS 9.8
CVE-2016-6164 [CRITICAL] CVE-2016-6164: ffmpeg - Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg ...
Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers to have unspecified impact via vectors involving sample size.
Scope: local
bookworm: resolved (fixed in 7:3.1.1-1)
bullseye: resolved (fixed in 7:3.1.1-1)
forky: resolved (fixed in 7:3.1.1-1)
sid: resolved (fixed in 7:3.1.1-1)
trixie: resolved (fixed in 7:3.1.1-1)
GHSA
GHSA-x4pr-8j2p-f6j2: Integer overflow in the mov_build_index function in libavformat/mov
ghsa_unreviewed·2022-05-17
CVE-2016-6164 [CRITICAL] CWE-190 GHSA-x4pr-8j2p-f6j2: Integer overflow in the mov_build_index function in libavformat/mov
Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers to have unspecified impact via vectors involving sample size.
OSV
CVE-2016-6164: Integer overflow in the mov_build_index function in libavformat/mov
osv·2017-01-23·CVSS 9.8
CVE-2016-6164 [CRITICAL] CVE-2016-6164: Integer overflow in the mov_build_index function in libavformat/mov
Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers to have unspecified impact via vectors involving sample size.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit%3Bh=8a3221cc67a516dfc1700bdae3566ec52c7ee823http://www.securityfocus.com/bid/95862https://www.ffmpeg.org/security.htmlhttp://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit%3Bh=8a3221cc67a516dfc1700bdae3566ec52c7ee823http://www.securityfocus.com/bid/95862https://www.ffmpeg.org/security.html
2017-01-23
Published