First published: Tue Apr 19 2016(Updated: )
The ff_h263_decode_mba function in libavcodec/ituh263dec.c in Libav before 11.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a file with crafted dimensions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu | =12.04 | |
libavutil | <=11.4 | |
SUSE Linux | =42.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5479 has a severity rating that indicates it can lead to a denial of service due to a divide-by-zero error.
To fix CVE-2015-5479, update Libav to version 11.5 or later, or apply the recommended patches available for your affected software.
CVE-2015-5479 affects Libav versions up to 11.4, Ubuntu 12.04 LTS, and openSUSE Leap 42.1.
CVE-2015-5479 can be exploited by remote attackers using specially crafted multimedia files to crash the application.
CVE-2015-5479 is considered a remote vulnerability, as it allows attacks from remote systems.