Medium severity5.5OSV Advisory· Published Dec 22, 2018· Updated Jun 17, 2026
CVE-2018-20358
CVE-2018-20358
Description
An invalid memory address dereference was discovered in the lt_prediction function of libfaad/lt_predict.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: = 2.8.8
= 2.8.8+ 1 more
- (no CPE)range: = 2.8.8
- (no CPE)range: 2_8_0, 2_8_1, 2_8_2, …
- cpe:2.3:a:audiocoding:freeware_advanced_audio_decoder_2:2.8.8:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- github.com/knik0/faad2/issues/31nvdExploitThird Party Advisory
- seclists.org/bugtraq/2019/Sep/28nvd
- security.gentoo.org/glsa/202006-17nvd
- www.debian.org/security/2019/dsa-4522nvd
News mentions
0No linked articles in our index yet.