Vulnerabilities > CVE-2015-1208 - Integer Underflow (Wrap or Wraparound) vulnerability in Ffmpeg

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
ffmpeg
CWE-191

Summary

Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain sensitive information from heap and/or stack memory via a crafted MP4 file.

Vulnerable Configurations

Part Description Count
Application
Ffmpeg
208

Common Weakness Enumeration (CWE)