NULL pointer dereference in libcdio - CVE-2017-18199
Published: March 1, 2018
libcdio
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists in the realloc_symlink function due to improper handling of crafted ISO image files. A remote attacker can create a specially crafted ISO image file, trick the victim into opening it and cause the service to crash.