CVE-2018-14394 PUBLISHED

libavformat/movenc.c in FFmpeg before 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by-zero error) with a user crafted Waveform audio file.

EPSS 0.47% · 64.5th percentile

Risk Scores

EPSS Score
0.47%
64.5th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlibav0, 6:0.8.7-1ubuntu2, 6:9.10-1ubuntu1
Ubuntu:18.04:LTSffmpeg7:3.4.2-2, 0, 7:3.3.4-2
Ubuntu:16.04:LTSffmpeg7:2.8.6-1ubuntu2, 7:2.8.8-0ubuntu0.16.04.1, 7:2.8.10-0ubuntu0.16.04.1

Timeline

References

Open in Interactive Console →