NULL pointer dereference in Libav - CVE-2017-17129
Published: December 4, 2017 / Updated: August 8, 2020
Libav
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
The ff_vc1_mc_4mv_chroma4 function in libavcodec/vc1_mc.c in Libav 12.2 allows remote attackers to cause a denial of service (segmentation fault and application crash) or possibly have unspecified other impact via a crafted file.