4.3
CVSSv2

CVE-2016-7424

Published: 07/10/2016 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The put_no_rnd_pixels8_xy2_mmx function in x86/rnd_template.c in libav 11.7 and previous versions allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via a crafted MP3 file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 8.0

libav libav

Vendor Advisories

Several security issues have been corrected in multiple demuxers and decoders of the libav multimedia library A full list of the changes is available at gitlibavorg/?p=libavgit;a=blob;f=Changelog;hb=refs/tags/v118 For the stable distribution (jessie), these problems have been fixed in version 6:118-1~deb8u1 We recommend that you upg ...