Sploitus

CVE-2012-0858

No indexed exploits for CVE-2012-0858 yet

The Shorten codec (shorten.c) in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Shorten file, related to an "invalid free".

Affected products
Ffmpeg, Libav
Ffmpeg
= 0.7.1, 0.7.2, 0.7.6, 0.7.7, 0.7.8, 0.7.9, 0.7.11
Fix
Available
CVSS 2.0
6.8 MEDIUM
EPSS
4.3% (90th percentile)
Weakness
CWE-399
NVD status
Modified
Published
2012-08-20
CVE-2012-0858 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2012-0858 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2012-0858 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.