CVE-2020-18776: Medium severity libavutil vulnerability
Published Aug 23, 2021
·Updated
In Libav 12.3, there is a segmentation fault in vc1decodebmbintfr in vc1block.c that allows an attacker to cause denial-of-service via a crafted file.
Affected Software
1 affected component
Libav Libav=12.3
Event History
Aug 23, 2021
CVE Published
via MITRE·09:50 PM
Data Sourced
via MITRE·09:50 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-18776?
CVE-2020-18776 is classified as a denial-of-service vulnerability, which can lead to application crashes.
2
How do I fix CVE-2020-18776?
To fix CVE-2020-18776, you should upgrade Libav to version 12.4 or higher where the vulnerability is resolved.
3
What are the consequences of exploiting CVE-2020-18776?
Exploiting CVE-2020-18776 can cause a segmentation fault resulting in denial-of-service and application instability.
4
Which versions of Libav are affected by CVE-2020-18776?
CVE-2020-18776 affects Libav version 12.3 specifically.
5
Is CVE-2020-18776 remotely exploitable?
CVE-2020-18776 can potentially be exploited via a crafted file, which means it may be remotely exploitable.