First published: Wed Feb 15 2017(Updated: )
Heap-based buffer overflow in the ff_audio_resample function in resample.c in libav before 11.4 allows remote attackers to cause a denial of service (crash) via vectors related to buffer resizing.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
libavutil | <=11.3 | |
<=11.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6832 has a high severity rating due to its potential to cause denial of service by crashing affected applications.
To fix CVE-2016-6832, upgrade Libav to version 11.4 or later.
The vulnerability in CVE-2016-6832 is caused by a heap-based buffer overflow in the ff_audio_resample function.
CVE-2016-6832 affects versions of Libav prior to 11.4.
Yes, CVE-2016-6832 can be exploited by remote attackers to cause a denial of service.