The export function in libavfilter/vf_signature.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out-of-array access) or possibly have unspecified other impact via a long filename.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "ffmpeg",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavcodec-extra",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavcodec-extra57",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavcodec57",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavdevice57",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavfilter-extra",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavfilter-extra6",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavfilter6",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavformat57",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavresample3",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libavutil55",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libpostproc54",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libswresample2",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
},
{
"binary_name": "libswscale4",
"binary_version": "7:3.4.4-0ubuntu0.18.04.1"
}
]
}