CVE-2019-14371: Medium severity libavutil vulnerability
Published Jul 28, 2019
·Updated
An issue was discovered in Libav 12.3. There is an infinite loop in the function movprobe in the file libavformat/mov.c, related to offset and tag.
Affected Software
1 affected component
Libav Libav=12.3
Event History
Jul 28, 2019
CVE Published
via MITRE·06:44 PM
Data Sourced
via MITRE·06:44 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14371?
CVE-2019-14371 has a medium severity due to potential application denial of service.
2
How do I fix CVE-2019-14371?
To fix CVE-2019-14371, update Libav to version 12.4 or later.
3
What software is affected by CVE-2019-14371?
CVE-2019-14371 affects Libav version 12.3.
4
What is the nature of the vulnerability in CVE-2019-14371?
The vulnerability in CVE-2019-14371 is an infinite loop in the mov_probe function within the Libav library.
5
What can be the consequences of exploiting CVE-2019-14371?
Exploiting CVE-2019-14371 can lead to an application crash or hang due to the infinite loop.