ZeroHour

CVE-2023-6604

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p38
Published
()
Modified
Description

A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage consumption, potentially leading to degraded performance or denial of service via the demuxing of arbitrary data as XBIN-formatted data without proper format validation.

Vendors
ffmpeg
Products
ffmpeg
Weakness
CWE-99, CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.