#VU43695 Buffer overflow in FFmpeg - CVE-2012-0850
Published: August 20, 2012 / Updated: August 11, 2020
FFmpeg
ffmpeg.sourceforge.net
Description
The vulnerability allows a remote non-authenticated attacker to perform service disruption.
The sbr_qmf_synthesis function in libavcodec/aacsbr.c in FFmpeg before 0.9.1 allows remote attackers to cause a denial of service (application crash) via a crafted mpg file that triggers memory corruption involving the v_off variable, probably a buffer underflow.