Denial of Service Vulnerability in Ffmpeg by VideoLAN
CVE-2020-20892

8.8HIGH

Key Information:

Vendor

Ffmpeg

Status
Vendor
CVE Published:
20 September 2021

What is CVE-2020-20892?

A vulnerability in the filter_frame function located in libavfilter/vf_lenscorrection.c of Ffmpeg 4.2.1 allows attackers to exploit a division by zero error. This flaw can lead to a Denial of Service condition, potentially disrupting the normal functionality of the affected system or application. It's crucial for users and administrators to be aware of this issue and apply necessary updates or mitigations to safeguard their systems.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-20892 : Denial of Service Vulnerability in Ffmpeg by VideoLAN