Medium severity6.5NVD Advisory· Published Jul 23, 2018· Updated Jun 17, 2026
CVE-2018-1999013
CVE-2018-1999013
Description
FFmpeg before commit a7e032a277452366771951e29fd0bf2bd5c029f0 contains a use-after-free vulnerability in the realmedia demuxer that can result in vulnerability allows attacker to read heap memory. This attack appear to be exploitable via specially crafted RM file has to be provided as input. This vulnerability appears to have been fixed in a7e032a277452366771951e29fd0bf2bd5c029f0 and later.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- osv-coords2 versionspkg:rpm/suse/ffmpeg&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015pkg:rpm/suse/ffmpeg&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015
< 3.4.2-4.5.1+ 1 more
- (no CPE)range: < 3.4.2-4.5.1
- (no CPE)range: < 3.4.2-4.5.1
Patches
Vulnerability mechanics
References
2- github.com/FFmpeg/FFmpeg/commit/a7e032a277452366771951e29fd0bf2bd5c029f0nvdIssue TrackingPatchThird Party Advisory
- www.securityfocus.com/bid/104896nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.