← Back

CVE-2012-6618

nvd nist
Published: Dec 24, 2013Modified: Apr 29, 2026

JSON object

Loading...
2.6
Vector
AV:N/AC:H/Au:N/C:N/I:N/A:P
Exploitability: 4.9 / Impact: 2.9
Source: NVD

Description

The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running with certain -probesize values, allows remote attackers to cause a denial of service (crash) via a crafted MP3 file, possibly related to frame size or lack of sufficient "frames to estimate rate."

Affected (2)

Products: Ffmpeg: Ffmpeg
1 product
Ffmpeg
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ffmpeg
Up to 1.0.1
Version 1.0

References (12)

Timeline

No history available yet.