Out-of-bounds read in FFmpeg - CVE-2018-6392
Published: July 26, 2018
FFmpeg
Detailed vulnerability description
The vulnerability allows a remote unauthenticated attacker to cause DoS condition.
The vulnerability exists in the filter_slice function in libavfilter/vf_transpose.c due to insufficient input validation. A remote attacker can trick the victim into opening a specially crafted MP4 file that submits malicious input, trigger a out-of-bounds read and cause the service to crash.