Out-of-bounds read in MediaInfo - CVE-2019-11372
Published: July 8, 2019
MediaInfo
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to perform denial of service (DoS) attack.
The vulnerability exists due to a boundary condition within the MediaInfoLib::File__Tags_Helper::Synched_Test() function in Tag/File__Tags.cpp file. A remote attacker can create a specially crafted file, trick the victim into opening it, trigger out-of-bounds read error and crash the affected application.