libavformat/movenc.c in FFmpeg before 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by-zero error) with a user crafted Waveform audio file.
References
Link | Resource |
---|---|
https://github.com/FFmpeg/FFmpeg/commit/3a2d21bc5f97aa0161db3ae731fc2732be6108b8 | Patch Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2019/01/msg00006.html |
Configurations
Information
Published : 2018-07-18 22:29
Updated : 2019-01-08 03:29
NVD link : CVE-2018-14394
Mitre link : CVE-2018-14394
JSON object : View
CWE
CWE-369
Divide By Zero
Products Affected
ffmpeg
- ffmpeg