CVE-2012-0853

Source
https://nvd.nist.gov/vuln/detail/CVE-2012-0853
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2012-0853.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2012-0853
Downstream
Published
2012-08-20T18:55:02Z
Modified
2025-08-09T19:01:28Z
Summary
[none]
Details

The decodeTonalComponents function in the Actrac3 codec (atrac3.c) in libavcodec in FFmpeg 0.7.x before 0.7.12, and 0.8.x before 0.8.11; and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1 allows remote attackers to cause a denial of service (infinite loop and crash) and possibly execute arbitrary code via a large component count in an Atrac 3 file.

References

Affected packages