CVE-2017-17127 PUBLISHED

The vc1_decode_frame function in libavcodec/vc1dec.c in Libav 12.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.

EPSS 0.40% · 60.4th percentile

Risk Scores

EPSS Score
0.40%
60.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlibav0, 6:0.8.7-1ubuntu2, 6:9.10-1ubuntu1

Timeline

References

Open in Interactive Console →