{"id":"CVE-2015-1208","details":"Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain sensitive information from heap and/or stack memory via a crafted MP4 file.","modified":"2026-04-10T03:45:05.614816Z","published":"2018-01-09T16:29:00Z","references":[{"type":"WEB","url":"http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=3ebd76a9c57558e284e94da367dd23b435e6a6d0"},{"type":"WEB","url":"https://bugs.chromium.org/p/chromium/issues/detail?id=444546"},{"type":"WEB","url":"https://github.com/FFmpeg/FFmpeg/blob/n2.4.6/Changelog"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"}]}