CVE-2018-10001 PUBLISHED

The decode_init function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via an AVI file.

EPSS 0.98% · 76.6th percentile

Risk Scores

EPSS Score
0.98%
76.6th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSffmpeg0, 7:3.3.4-2, 7:3.3.4-2build3

Timeline

References

Open in Interactive Console →