Bugzilla – Bug 1154065
VUL-1: CVE-2019-17539: ffmpeg: NULL pointer dereference in avcodec_open2 in libavcodec/utils.c
Last modified: 2024-07-26 17:37:04 UTC
CVE-2019-17539 In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no valid close function pointer. References: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=15733 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2019-17539 http://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-17539.html http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-17539 https://github.com/FFmpeg/FFmpeg/commit/8df6884832ec413cf032dfaa45c23b1c7876670c
even though the code is slightly different, tracking as affected for: - SUSE:SLE-15:Update
https://build.suse.de/request/show/243003