CVE-2018-6912 PUBLISHED CVSS 6.5 MEDIUM

The decode_plane function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via a crafted AVI file.

EPSS 0.70% · 71.8th percentile

Risk Scores

CVSS v3.0
6.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.70%
71.8th percentile

Affected Products

VendorProductVersions
n/an/an/a
ffmpegffmpeg0

Timeline

References

Open in Interactive Console →