Critical severity9.8NVD Advisory· Published Apr 14, 2017· Updated May 13, 2026
CVE-2017-7865
CVE-2017-7865
Description
FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c.
Affected products
2- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/FFmpeg/FFmpeg/commit/2080bc33717955a0e4268e738acf8c1eeddbf8cbnvdPatchThird Party Advisory
- www.securityfocus.com/bid/97685nvdThird Party AdvisoryVDB Entry
- bugs.chromium.org/p/oss-fuzz/issues/detailnvdThird Party AdvisoryVDB Entry
- lists.debian.org/debian-lts-announce/2019/02/msg00005.htmlnvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.