In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer overflow conditions, potentially resulting in undefined behavior or crashes during the decoding process.
{ "ubuntu_priority": "medium", "binaries": [ { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "ffmpeg" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "ffmpeg-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "ffmpeg-doc" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec-extra" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec-extra61" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec-extra61-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec61" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavcodec61-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavdevice-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavdevice61" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavdevice61-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter-extra" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter-extra10" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter-extra10-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter10" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavfilter10-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat-extra" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat-extra61" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat-extra61-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat61" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavformat61-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavutil-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavutil59" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libavutil59-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libpostproc-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libpostproc58" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libpostproc58-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswresample-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswresample5" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswresample5-dbgsym" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswscale-dev" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswscale8" }, { "binary_version": "7:7.0.2-3ubuntu1.1", "binary_name": "libswscale8-dbgsym" } ], "availability": "No subscription required" }
{ "ubuntu_priority": "medium", "binaries": [ { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "ffmpeg" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "ffmpeg-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "ffmpeg-doc" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec-extra" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec-extra61" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec-extra61-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec61" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavcodec61-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavdevice-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavdevice61" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavdevice61-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter-extra" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter-extra10" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter-extra10-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter10" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavfilter10-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat-extra" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat-extra61" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat-extra61-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat61" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavformat61-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavutil-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavutil59" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libavutil59-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libpostproc-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libpostproc58" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libpostproc58-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswresample-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswresample5" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswresample5-dbgsym" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswscale-dev" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswscale8" }, { "binary_version": "7:7.1.1-1ubuntu1", "binary_name": "libswscale8-dbgsym" } ], "availability": "No subscription required" }