CVE-2018-19212: Medium severity libwebm vulnerability
Published Nov 12, 2018
·Updated
In libwebm through 2018-10-03, there is an abort caused by libwebm::Webm2Pes::InitWebmParser() that will lead to a DoS attack.
Affected Software
1 affected component
webmproject Libwebm<=1.0.0.27
Event History
Nov 12, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-19212?
CVE-2018-19212 is a vulnerability in libwebm through 2018-10-03 that can lead to a denial-of-service (DoS) attack.
2
What causes the vulnerability?
The vulnerability is caused by an abort triggered by the function libwebm::Webm2Pes::InitWebmParser().
3
How can the vulnerability be exploited?
The vulnerability can be exploited by malicious actors to launch a DoS attack.
4
What is the severity of CVE-2018-19212?
The severity of CVE-2018-19212 is medium with a CVSSv3 base score of 6.5.
5
Is there a fix available for CVE-2018-19212?
At the moment, there is no information available about any official fix for CVE-2018-19212. It is recommended to follow the guidance provided by the vendor or project maintainers.