{"id":"CVE-2023-47470","details":"Buffer Overflow vulnerability in Ffmpeg before github commit 4565747056a11356210ed8edcecb920105e40b60 allows a remote attacker to achieve an out-of-array write, execute arbitrary code, and cause a denial of service (DoS) via the ref_pic_list_struct function in libavcodec/evc_ps.c","modified":"2026-08-17T05:26:24.813433Z","published":"2023-11-16T00:00:00Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47470.json","cna_assigner":"mitre"},"references":[{"type":"WEB","url":"https://github.com/goldds96/Report/tree/main/FFmpeg"},{"type":"WEB","url":"https://patchwork.ffmpeg.org/project/ffmpeg/patch/20230915131147.5945-2-michael%40niedermayer.cc/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47470.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-47470"},{"type":"FIX","url":"https://github.com/FFmpeg/FFmpeg/commit/4565747056a11356210ed8edcecb920105e40b60"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.ffmpeg.org/ffmpeg.git","events":[{"introduced":"47ac3e60653da651dfa064b649d0ac297560d8d5"},{"last_affected":"47ac3e60653da651dfa064b649d0ac297560d8d5"}],"database_specific":{"source":"CPE_STRING","cpe":"cpe:2.3:a:ffmpeg:ffmpeg:6.1:*:*:*:*:*:*:*","extracted_events":[{"introduced":"6.1"},{"last_affected":"6.1"}]}}],"versions":["6.1","n6.1-dev"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-47470.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/ffmpeg/ffmpeg","events":[{"introduced":"47ac3e60653da651dfa064b649d0ac297560d8d5"},{"fixed":"4565747056a11356210ed8edcecb920105e40b60"}],"database_specific":{"cpe":"cpe:2.3:a:ffmpeg:ffmpeg:6.1:*:*:*:*:*:*:*","extracted_events":[{"introduced":"6.1"},{"last_affected":"6.1"}],"source":["CPE_STRING","REFERENCES"]}}],"versions":["6.1","n6.1-dev"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-47470.json","vanir_signatures_modified":"2026-08-17T05:26:24Z","vanir_signatures":[{"id":"CVE-2023-47470-69ce1bee","signature_type":"Function","signature_version":"v1","source":"https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60","target":{"file":"libavcodec/evc_ps.c","function":"ff_evc_parse_sps"},"deprecated":false,"digest":{"function_hash":"248839141488199084651718863894566508383","length":5304}},{"source":"https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60","target":{"file":"libavcodec/evc_ps.c"},"deprecated":false,"digest":{"line_hashes":["268453212149808366153355195284289365057","82696718011416341280700994076951153335","35166779339949289403801592891802974920","88806988306963667029635323470553412014","128616494079994607662100980540104834962","287073013885685082095240898921203037963","70179888903790548748352422179998636974","183663144876056209293392218069947613467","288599343916912767455138753649377933925","324465620546165705830872733515019851457","124690743313163576624029504169172996490","256543890214620390209099573177771663093","200851045298313766119409052664925813774","26337314354739626103704082051935018684","207933566733001321718964632158793599309","148650997795960429432802689132317936288","112500176763935913404565839274233395082","210164202446402066342086487630884970761","17851749386989288847132800245237473925","17569260652914297742850635110045181305","236912979907815961475785225252567646083"],"threshold":0.9},"id":"CVE-2023-47470-b364d799","signature_type":"Line","signature_version":"v1"},{"signature_type":"Function","signature_version":"v1","source":"https://github.com/ffmpeg/ffmpeg/commit/4565747056a11356210ed8edcecb920105e40b60","target":{"file":"libavcodec/evc_ps.c","function":"ref_pic_list_struct"},"deprecated":false,"digest":{"length":575,"function_hash":"324748375909282064523825360179151024490"},"id":"CVE-2023-47470-c6a355a2"}]}}],"schema_version":"1.9.0"}