CVE-2018-17235
20.09.2018, 06:29
The function mp4v2::impl::MP4Track::FinishSdtp() in mp4track.cpp in libmp4v2 2.1.0 mishandles compatibleBrand while processing a crafted mp4 file, which leads to a heap-based buffer over-read, causing denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
mp4v2_project | mp4v2 | 2.1.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration