PT-2020-14437 · FFmpeg · Ffjpeg

Yangjiageng

·

Published

2020-07-01

·

Updated

2023-08-17

·

CVE-2020-15470

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ffjpeg versions prior to 2020-02-24
Description The issue is a heap-based buffer overflow in the jfif decode function located in jfif.c.
Recommendations For versions prior to 2020-02-24, update to a version released after 2020-02-24 to resolve the issue.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2020-15470

Affected Products

Ffjpeg