cpe:/a:ffmpeg:ffmpeg:3.4 CVE-2017-17081 2017-11-30T16:29:00.297-05:00 2018-01-28T21:29:00.520-05:00 4.3 NETWORK MEDIUM NONE NONE NONE PARTIAL http://nvd.nist.gov DEBIAN DSA-4099 MISC https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=3516#c1 MISC https://github.com/FFmpeg/FFmpeg/commit/58cf31cee7a456057f337b3102a03206d833d5e8 MISC https://lists.ffmpeg.org/pipermail/ffmpeg-devel/2017-November/219748.html The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 3.4 does not properly validate widths and heights, which allows remote attackers to cause a denial of service (integer signedness error and out-of-array read) via a crafted MPEG file.