CVE-2014-2299: wireshark: buffer overflow in MPEG file parser (wnpa-sec-2014-04)

Severity: Critical

CVSS Score: 9.3

Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large record in MPEG data.