Junglewise Threat Intelligence

CVE-2016-6920: FFmpeg heap buffer overflow in decode_block in libavcodec/exr.c

CVE-2016-6920 · Severity: high · CVSS 7.5 · Published 2017-01-23

Technologies: Ffmpeg. Vendors: Ffmpeg.

Executive brief

FFmpeg is a widely used software library for processing multimedia files like video and audio. A vulnerability in its image processing component could allow a remote attacker to crash applications using the library by providing a specially crafted image file. This could lead to service outages or application instability for any software that relies on FFmpeg to handle EXR image files.

Technical details

A heap-based buffer overflow exists in the decode_block function within libavcodec/exr.c of FFmpeg. The vulnerability is triggered when processing OpenEXR (EXR) files with malformed tile positions, leading to out-of-bounds memory access. A remote attacker can exploit this by providing a crafted multimedia file to an application using a vulnerable version of FFmpeg. Successful exploitation results in a denial of service (application crash). The issue was addressed in FFmpeg version 3.1.3.

Affected products

  • FFmpeg FFmpeg before 3.1.3

Timeline

  • 2017-01-23: disclosed: NVD publication date
  • 2016-08-21: patched: Upstream fix committed to FFmpeg git repository

References

Related threats