VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt input" or (2) by "starting decoding from a P-frame," which triggers an out-of-bounds read, related to "the clamping of motion vectors in SPLITMV blocks".
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2012-02-23T19:00:00
Updated: 2012-03-21T09:00:00
Reserved: 2012-01-19T00:00:00
Link: CVE-2012-0823
JSON object: View
NVD Information
Status : Modified
Published: 2012-02-23T20:07:32.627
Modified: 2020-07-29T18:15:28.883
Link: CVE-2012-0823
JSON object: View
Redhat Information
No data.
CWE