CVE-2012-0850
Publication date 14 February 2012
Last updated 24 July 2024
Ubuntu priority
Description
The sbr_qmf_synthesis function in libavcodec/aacsbr.c in FFmpeg before 0.9.1 allows remote attackers to cause a denial of service (application crash) via a crafted mpg file that triggers memory corruption involving the v_off variable, probably a buffer underflow.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| libav | ||
| ffmpeg | ||
| ffmpeg-extra | ||
| libav-extra | ||
Notes
Patch details
| Package | Patch details |
|---|---|
| libav | |
| ffmpeg |
References
Related Ubuntu Security Notices (USN)
- USN-1478-1
- Libav vulnerabilities
- 18 June 2012