[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2012:023 -- Mandriva libvpx

ID: oval:org.secpod.oval:def:302854Date: (C)2012-12-11   (M)2021-09-11
Class: PATCHFamily: unix




A vulnerability has been found and corrected in libvpx: VP8 Codec SDK before 1.0.0 Duclair allows remote attackers to cause a denial of service via unspecified corrupt input or by starting decoding from a P-frame, which triggers an out-of-bounds read, related to the clamping of motion vectors in SPLITMV blocks . The updated packages have been patched to correct this issue.

Platform:
Mandriva Linux 2011.0
Mandriva Linux 2010.1
Product:
libvpx
Reference:
MDVSA-2012:023
CVE-2012-0823
CVE    1
CVE-2012-0823
CPE    2
cpe:/o:mandriva:linux:2010.1
cpe:/o:mandriva:linux:2011.0

© SecPod Technologies