Wind River Support Network

HomeDefectsLIN10-3669
Not to be fixed

LIN10-3669 : Security Advisory - libav - CVE-2017-18242

Created: Apr 2, 2018    Updated: Aug 1, 2019
Resolved Date: Aug 1, 2019
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

The apply_dependent_coupling function in libavcodec/aacdec.c in Libav 12.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted aac file.

https://nvd.nist.gov/vuln/detail/CVE-2017-18242

CVEs


Live chat
Online