Buffer Overflow vulnerability in Ffmpeg before github commit 4565747056a11356210ed8edcecb920105e40b60 allows a remote attacker to achieve an out-of-array write, execute arbitrary code, and cause a denial of service (DoS) via the refpicliststruct function in libavcodec/evcps.c
[
{
"signature_type": "Function",
"source": "https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60",
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "248839141488199084651718863894566508383",
"length": 5304.0
},
"id": "CVE-2023-47470-69ce1bee",
"target": {
"function": "ff_evc_parse_sps",
"file": "libavcodec/evc_ps.c"
}
},
{
"signature_type": "Line",
"source": "https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60",
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"268453212149808366153355195284289365057",
"82696718011416341280700994076951153335",
"35166779339949289403801592891802974920",
"88806988306963667029635323470553412014",
"128616494079994607662100980540104834962",
"287073013885685082095240898921203037963",
"70179888903790548748352422179998636974",
"183663144876056209293392218069947613467",
"288599343916912767455138753649377933925",
"324465620546165705830872733515019851457",
"124690743313163576624029504169172996490",
"256543890214620390209099573177771663093",
"200851045298313766119409052664925813774",
"26337314354739626103704082051935018684",
"207933566733001321718964632158793599309",
"148650997795960429432802689132317936288",
"112500176763935913404565839274233395082",
"210164202446402066342086487630884970761",
"17851749386989288847132800245237473925",
"17569260652914297742850635110045181305",
"236912979907815961475785225252567646083"
]
},
"id": "CVE-2023-47470-b364d799",
"target": {
"file": "libavcodec/evc_ps.c"
}
},
{
"signature_type": "Function",
"source": "https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60",
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "324748375909282064523825360179151024490",
"length": 575.0
},
"id": "CVE-2023-47470-c6a355a2",
"target": {
"function": "ref_pic_list_struct",
"file": "libavcodec/evc_ps.c"
}
}
]