In libavcodec in FFmpeg 4.0.1, improper maintenance of the consistency between the context profile field and studio_profile in libavcodec may trigger an assertion failure while converting a crafted AVI file to MPEG4, leading to a denial of service, related to error_resilience.c, h263dec.c, and mpeg4videodec.c.
References
Link | Resource |
---|---|
https://github.com/FFmpeg/FFmpeg/commit/bd27a9364ca274ca97f1df6d984e88a0700fb235 | Patch |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-07-05T17:00:00
Updated: 2018-07-05T16:57:01
Reserved: 2018-07-05T00:00:00
Link: CVE-2018-13304
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-07-05T17:29:00.547
Modified: 2019-10-03T00:03:26.223
Link: CVE-2018-13304
JSON object: View
Redhat Information
No data.
CWE