Vulnerabilities > CVE-2016-6881 - Resource Management Errors vulnerability in Ffmpeg

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
ffmpeg
CWE-399

Summary

The zlib_refill function in libavformat/swfdec.c in FFmpeg before 3.1.3 allows remote attackers to cause an infinite loop denial of service via a crafted SWF file.

Vulnerable Configurations

Part Description Count
Application
Ffmpeg
294

Common Weakness Enumeration (CWE)