CVE-2017-17128: Buffer Overflow
Published Dec 4, 2017
·Updated
The h264sliceinit function in libavcodec/h264slice.c in Libav 12.2 allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted file.
Affected Software
1 affected component
Libav Libav=12.2
Event History
Dec 4, 2017
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-17128?
CVE-2017-17128 is classified as a denial of service vulnerability.
2
How do I fix CVE-2017-17128?
To fix CVE-2017-17128, upgrade to a patched version of Libav beyond 12.2.
3
What impact does CVE-2017-17128 have?
CVE-2017-17128 can lead to a segmentation fault and application crash when processing crafted files.
4
Is my version of Libav affected by CVE-2017-17128?
Yes, Libav version 12.2 is specifically affected by CVE-2017-17128.
5
Who can exploit CVE-2017-17128?
CVE-2017-17128 can be exploited by remote attackers through the use of specially crafted files.