CVE-2016-9822: Integer Overflow
Published Mar 1, 2017
·Updated
Integer overflow in libavcodec/mpeg12dec.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.
Affected Software
1 affected component
Libav Libav=11.8
Event History
Mar 1, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9822?
CVE-2016-9822 has a medium severity rating due to potential denial of service resulting from an integer overflow.
2
How does CVE-2016-9822 affect users?
CVE-2016-9822 can cause a crash in applications using libav 11.8 when processing a specially crafted MPEG file.
3
How do I fix CVE-2016-9822?
To fix CVE-2016-9822, users should upgrade to an unaffected version of libav or apply available patches.
4
Are there any workarounds for CVE-2016-9822?
There are no known effective workarounds for CVE-2016-9822 aside from upgrading or patching libav.
5
Which version of libav is affected by CVE-2016-9822?
CVE-2016-9822 specifically affects libav version 11.8.