libavformat/movenc.c in FFmpeg before 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by-zero error) with a user crafted Waveform audio file.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-14394.json"