UBUNTU-CVE-2017-17555
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-17555
Summary:
Details: The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted audio file.
References: https://ubuntu.com/security/CVE-2017-17555, https://github.com/IvanCql/vulnerability/blob/master/An%20NULL%20pointer%20dereference(DoS)%20Vulnerability%20was%20found%20in%20function%20swri_audio_convert%20of%20ffmpeg%20libswresample.md, https://github.com/aubio/aubio/issues/137, https://www.cve.org/CVERecord?id=CVE-2017-17555
Affected packages
Package
Name: aubio
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
