Vulnerability Name:

CVE-2016-3062 (CCN-114450)

Assigned:2016-03-09
Published:2016-03-09
Updated:2018-10-30
Summary:The mov_read_dref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via the entries value in a dref box in an MP4 file.
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L)
5.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.5 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2016-3062

Source: SUSE
Type: Third Party Advisory
openSUSE-SU-2016:1685

Source: DEBIAN
Type: Third Party Advisory
DSA-3603

Source: CONFIRM
Type: Issue Tracking, Vendor Advisory
https://bugzilla.libav.org/show_bug.cgi?id=929

Source: XF
Type: UNKNOWN
ffmpeg-libav-cve20163062-code-exec(114450)

Source: CONFIRM
Type: UNKNOWN
https://ffmpeg.org/security.html

Source: CCN
Type: FFmpeg GIT Repository
mov: Check the entries value when parsing dref boxes

Source: CONFIRM
Type: Patch
https://git.libav.org/?p=libav.git;a=commit;h=7e01d48cfd168c3dfc663f03a3b6a98e0ecba328

Source: CONFIRM
Type: Patch
https://github.com/FFmpeg/FFmpeg/commit/689e59b7ffed34eba6159dcc78e87133862e3746

Source: CONFIRM
Type: Release Notes
https://libav.org/releases/libav-11.7.changelog

Source: GENTOO
Type: UNKNOWN
GLSA-201705-08

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2016-3062

Vulnerable Configuration:Configuration 1:
  • cpe:/a:libav:libav:*:*:*:*:*:*:*:* (Version <= 11.6)

  • Configuration 2:
  • cpe:/a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:* (Version <= 0.10.15)

  • Configuration 3:
  • cpe:/o:debian:debian_linux:*:*:*:*:*:*:*:* (Version <= 8.0)

  • Configuration 4:
  • cpe:/o:opensuse:leap:42.1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:ffmpeg:ffmpeg:0.10:*:*:*:*:*:*:*
  • OR cpe:/a:libav:libav:11.6:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20163062
    V
    CVE-2016-3062
    2022-06-30
    oval:org.opensuse.security:def:112599
    P
    libav-tools-12.3-1.17 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:106083
    P
    libav-tools-12.3-1.17 on GA media (Moderate)
    2021-10-01
    oval:org.cisecurity:def:958
    P
    DSA-3603-1 -- libav -- security update
    2016-08-12
    oval:com.ubuntu.artful:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 17.10 (artful) - medium.
    2016-06-16
    oval:com.ubuntu.trusty:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 14.04 LTS (trusty) - medium.
    2016-06-16
    oval:com.ubuntu.cosmic:def:201630620000000
    V
    CVE-2016-3062 on Ubuntu 18.10 (cosmic) - medium.
    2016-06-16
    oval:com.ubuntu.bionic:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 18.04 LTS (bionic) - medium.
    2016-06-16
    oval:com.ubuntu.xenial:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 16.04 LTS (xenial) - medium.
    2016-06-16
    oval:com.ubuntu.bionic:def:201630620000000
    V
    CVE-2016-3062 on Ubuntu 18.04 LTS (bionic) - medium.
    2016-06-16
    oval:com.ubuntu.cosmic:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 18.10 (cosmic) - medium.
    2016-06-16
    oval:com.ubuntu.xenial:def:201630620000000
    V
    CVE-2016-3062 on Ubuntu 16.04 LTS (xenial) - medium.
    2016-06-16
    oval:com.ubuntu.precise:def:20163062000
    V
    CVE-2016-3062 on Ubuntu 12.04 LTS (precise) - medium.
    2016-06-16
    BACK
    libav libav *
    ffmpeg ffmpeg *
    debian debian linux *
    opensuse leap 42.1
    ffmpeg ffmpeg 0.10
    libav libav 11.6