#VU29633 NULL pointer dereference in FFmpeg - CVE-2019-17539
Published: July 10, 2020
FFmpeg
ffmpeg.sourceforge.net
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to a NULL pointer dereference error within the avcodec_open2 in libavcodec/utils.c in in FFmpeg. A remote attacker can pass specially crafted media content to the affected application and perform a denial of service (DoS) attack or execute arbitrary code on the system.
Successful exploitation of the vulnerability may allows an attacker to compromise the affected system.