CVE-2019-17539 PUBLISHED

In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no valid close function pointer.

EPSS 0.67% · 71.1th percentile

Risk Scores

EPSS Score
0.67%
71.1th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSffmpeg0, 7:3.3.4-2, 7:3.3.4-2build3
Ubuntu:Pro:14.04:LTSlibav6:9.20-0ubuntu0.14.04.1, 0, 6:9.20-0ubuntu0.14.04.1+esm1

Timeline

References

Open in Interactive Console →