The movreaddref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via the entries value in a dref box in an MP4 file.
[ { "source": "https://github.com/ffmpeg/ffmpeg/commit/689e59b7ffed34eba6159dcc78e87133862e3746", "signature_version": "v1", "target": { "file": "libavformat/mov.c", "function": "mov_read_dref" }, "digest": { "length": 2968.0, "function_hash": "200661769134576889566610710176461660895" }, "deprecated": false, "signature_type": "Function", "id": "CVE-2016-3062-0e5bcfb1" }, { "source": "https://github.com/ffmpeg/ffmpeg/commit/689e59b7ffed34eba6159dcc78e87133862e3746", "signature_version": "v1", "target": { "file": "libavformat/mov.c" }, "digest": { "line_hashes": [ "317154361394325592763235173574819288465", "81931024720670069676695763964305328371", "99180079691106904150277618992627971739", "154943404290230601118350232460207894058" ], "threshold": 0.9 }, "deprecated": false, "signature_type": "Line", "id": "CVE-2016-3062-f28fc5ab" } ]