Heap-based buffer overflow in the FFmpegVideoDecoder::GetVideoBuffer function in media/filters/ffmpeg_video_decoder.cc in Google Chrome before 35.0.1916.153 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging VideoFrame data structures that are too small for proper interaction with an underlying FFmpeg library.
Advisories
Source ID Title
Debian DSA Debian DSA DSA-2959-1 chromium-browser security update
EUVD EUVD EUVD-2014-3175 Heap-based buffer overflow in the FFmpegVideoDecoder::GetVideoBuffer function in media/filters/ffmpeg_video_decoder.cc in Google Chrome before 35.0.1916.153 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging VideoFrame data structures that are too small for proper interaction with an underlying FFmpeg library.
Ubuntu USN Ubuntu USN USN-2298-1 Oxide vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2024-08-06T10:35:56.467Z

Reserved: 2014-05-03T00:00:00

Link: CVE-2014-3157

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-06-11T10:57:18.610

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-3157

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses