A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuses snprintf. NOTE: Third parties dispute that this is a vulnerability because “no evidence of a vulnerability is provided” and only “a generic warning from a static code analysis” is provided
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:01:53.265Z
Reserved: 2019-03-12T00:00:00
Link: CVE-2019-9719
No data.
Status : Modified
Published: 2019-09-19T21:15:10.503
Modified: 2024-11-21T04:52:10.293
Link: CVE-2019-9719
No data.
OpenCVE Enrichment
No data.
Weaknesses