An issue was discovered in Libav 12.3. Division by zero in range_decode_culshift in libavcodec/apedec.c allows remote attackers to cause a denial of service (application crash), as demonstrated by avconv.
The product divides a value by zero.
Link | Tags |
---|---|
https://bugzilla.libav.org/show_bug.cgi?id=1161#c1 | issue tracking exploit third party advisory |
https://lists.debian.org/debian-lts-announce/2019/12/msg00003.html | third party advisory mailing list |