There exists a NULL pointer dereference in ff_vc1_parse_frame_header_adv in vc1.c in Libav 12.3, which allows attackers to cause a denial-of-service through a crafted aac file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-30T06:00:00

Updated: 2024-08-05T11:23:08.154Z

Reserved: 2018-10-29T00:00:00

Link: CVE-2018-18829

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-10-30T06:29:00.750

Modified: 2018-12-06T16:40:29.410

Link: CVE-2018-18829

cve-icon Redhat

No data.