CVE-2013-7015

EPSS 1.2%
Published: 12/9/2013Modified: 4/28/2026

Description

The flashsv_decode_frame function in libavcodec/flashsv.c in FFmpeg before 2.1 does not properly validate a certain height value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Flash Screen Video data.

Affected packages (1)

References (1)