CVE-2018-18828: Buffer Overflow
Published Oct 30, 2018
·Updated
There exists a heap-based buffer overflow in vc1decodeiblockadv in vc1block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.
Affected Software
1 affected component
Libav Libav=12.3
Event History
Oct 30, 2018
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18828?
CVE-2018-18828 has been classified as a high severity vulnerability due to its potential to cause denial-of-service.
2
How do I fix CVE-2018-18828?
To fix CVE-2018-18828, upgrade Libav to version 12.4 or higher, where the vulnerability has been addressed.
3
What types of attacks can be executed using CVE-2018-18828?
CVE-2018-18828 can be exploited by attackers to launch denial-of-service attacks through crafted AAC files.
4
Which version of Libav is affected by CVE-2018-18828?
CVE-2018-18828 affects Libav version 12.3.
5
Is CVE-2018-18828 a remote exploit vulnerability?
CVE-2018-18828 can be abused by remote attackers via specially crafted input files.