TROYANOSYVIRUS
Back to CVEs

CVE-2016-2839

N/A

Description

Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 on Linux make cairo _cairo_surface_get_extents calls that do not properly interact with libav header allocation in FFmpeg 0.10, which allows remote attackers to cause a denial of service (application crash) via a crafted video.

CVE Details

CVSS v3.1 ScoreN/A
Published8/5/2016
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0

Affected Products

ffmpeg:ffmpeglinux:linux_kernelmozilla:firefox

Weaknesses (CWE)

CWE-20

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.