PFileFlashPixView::GetGlobalInfoProperty in ffpxvw.cpp in libfpx 1.3.1p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-12921.json"