CVE-2018-12459 PUBLISHED CVSS 4.300000190734863 MEDIUM

An inconsistent bits-per-sample value in the ff_mpeg4_decode_picture_header function in libavcodec/mpeg4videodec.c in FFmpeg 4.0 may trigger an assertion violation while converting a crafted AVI file to MPEG4, leading to a denial of service.

EPSS 0.44% · 62.7th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
0.44%
62.7th percentile

Affected Products

VendorProductVersions
ffmpegffmpeg4.0
n/an/an/a

Timeline

References

Open in Interactive Console →