The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running with certain -probesize values, allows remote attackers to cause a denial of service (crash) via a crafted MP3 file, possibly related to frame size or lack of sufficient "frames to estimate rate."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2013-12-24T20:00:00
Updated: 2024-08-06T21:36:01.430Z
Reserved: 2013-12-24T00:00:00
Link: CVE-2012-6618
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-12-24T20:55:04.687
Modified: 2024-11-21T01:46:31.013
Link: CVE-2012-6618
Redhat
No data.