Improper Validation Vulnerability in FFmpeg by VideoLAN
CVE-2024-31581

Currently unrated

Key Information:

Vendor
VideoLAN
Status
Vendor
CVE Published:
17 April 2024

Summary

An improper validation found in FFmpeg's libavcodec can lead to undefined behavior during the processing of data. This vulnerability arises from insufficient checks on array indexes, potentially allowing attackers to exploit this flaw. The issue was identified in the cbs_h266_syntax_template.c file, where certain inputs can bypass validation checks, leading to unpredictable application behavior.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.