Double free vulnerability in FFmpeg 3.3.4 and earlier allows remote attackers to cause a denial of service via a crafted AVI file.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/101518 | Third Party Advisory VDB Entry |
http://www.openwall.com/lists/oss-security/2017/10/20/4 | Mailing List Patch Third Party Advisory |
https://www.debian.org/security/2017/dsa-4049 |
Configurations
Information
Published : 2017-10-24 10:29
Updated : 2017-11-28 18:29
NVD link : CVE-2017-15186
Mitre link : CVE-2017-15186
JSON object : View
CWE
CWE-415
Double Free
Products Affected
ffmpeg
- ffmpeg