Wind River Support Network

HomeDefectsLIN7-9253
Fixed

LIN7-9253 : Security Advisory - libav - CVE-2017-17130

Created: Dec 14, 2017    Updated: May 18, 2019
Resolved Date: Dec 24, 2018
Found In Version: 7.0.0.27
Fix Version: 7.0.0.30
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

The ff_free_picture_tables function in libavcodec/mpegpicture.c in Libav 12.2 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file, related to vc1_decode_i_blocks_adv.

https://nvd.nist.gov/vuln/detail/CVE-2017-17130

CVEs


Live chat
Online