First published: Thu May 18 2017(Updated: )
libav before 12.1 is vulnerable to an invalid read of size 1 due to NULL pointer dereferencing in the nsv_read_chunk function in libavformat/nsvdec.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libav | <=12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9051 is classified as a vulnerability that can lead to potential denial-of-service due to an invalid read.
To fix CVE-2017-9051, users should upgrade to Libav version 12.1 or later.
CVE-2017-9051 affects the Libav multimedia framework, specifically the NSV (Nullsoft Streaming Video) decoder.
The maintainers of the Libav project are responsible for addressing CVE-2017-9051.
The impact of CVE-2017-9051 is that it may cause applications using Libav to crash or behave unexpectedly.