VYPR
Medium severity6.5OSV Advisory· Published Dec 10, 2018· Updated Jun 17, 2026

CVE-2018-20001

CVE-2018-20001

Description

In Libav 12.3, there is a floating point exception in the range_decode_culshift function (called from range_decode_bits) in libavcodec/apedec.c that will lead to remote denial of service via crafted input.

Affected products

3
  • Libav/LibavOSV3 versions
    dev14.2, v0.7, v0.7b1, …+ 2 more
    • (no CPE)range: dev14.2, v0.7, v0.7b1, …
    • cpe:2.3:a:libav:libav:12.3:*:*:*:*:*:*:*
    • (no CPE)range: 12.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.