High severity7.5NVD Advisory· Published Mar 3, 2017· Updated May 13, 2026
CVE-2016-7970
CVE-2016-7970
Description
Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial of service via unspecified vectors.
Affected products
4cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:25:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- www.openwall.com/lists/oss-security/2016/10/05/2nvdMailing ListPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatch
- github.com/libass/libass/pull/240/commits/08e754612019ed84d1db0d1fc4f5798248decd75nvdIssue TrackingPatchThird Party Advisory
- github.com/libass/libass/releases/tag/0.13.4nvdPatchRelease NotesThird Party Advisory
- security.gentoo.org/glsa/201702-25nvdPatchThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/93358nvdThird Party AdvisoryVDB Entry
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KW6DNERYHPI5Y6SQYU3XKTVSCOWMIHUC/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R7JJ2SGVOX6UQQIRMVC3QACJLKHE2PYN/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VUOUOK3VULMMZTNSCRFCNPDAPDWAVK7X/nvd
News mentions
0No linked articles in our index yet.