Possible OOB Read Vulnerability in MPEG2Dec Could Lead to Remote DoS
CVE-2017-13320
6.5MEDIUM
What is CVE-2017-13320?
The vulnerability identified in the Libmpeg2dec library, specifically within the impeg2d_bit_stream_flush() function, presents an out-of-bounds read scenario. This is caused by a lack of proper bounds checking which could potentially allow an attacker to exploit this flaw, leading to a remote denial of service condition. Although user interaction is required for the exploitation to occur, the implications can affect system stability and overall security on Android devices that utilize this library.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Android 7
Android 7.1.1
Android 7.1.2
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved