Описание
The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.
The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-15822
- https://github.com/FFmpeg/FFmpeg/commit/6b67d7f05918f7a1ee8fc6ff21355d7e8736aa10
- https://github.com/FFmpeg/FFmpeg/commit/d8ecb335fe4852bbc172c7b79e66944d158b4d92
- https://lists.debian.org/debian-lts-announce/2019/05/msg00043.html
- https://seclists.org/bugtraq/2019/May/60
- https://usn.ubuntu.com/3967-1
- https://usn.ubuntu.com/4431-1
- https://www.debian.org/security/2019/dsa-4449
Связанные уязвимости
The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.
The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.
The flv_write_packet function in libavformat/flvenc.c in FFmpeg throug ...
Уязвимость функции flv_write_packet мультимедийной библиотеки FFmpeg, связанная с отсутствием проверки на наличие пустого аудиопакета, позволяющая нарушителю вызвать отказ в обслуживании