In libwebm before 2019-03-08, a NULL pointer dereference caused by the functions OutputCluster and OutputTracks in webm_info.cc will trigger an abort, which allows a DoS attack, a similar issue to CVE-2018-19212.
References
Link | Resource |
---|---|
https://bugs.chromium.org/p/webm/issues/detail?id=1605 | Permissions Required Third Party Advisory |
https://chromium.googlesource.com/webm/libwebm/+/2427abe0bde234987ed005a3adca461e9a85dfb7 | Mailing List Patch Third Party Advisory |
https://bugs.chromium.org/p/webm/issues/detail?id=1605 | Permissions Required Third Party Advisory |
https://chromium.googlesource.com/webm/libwebm/+/2427abe0bde234987ed005a3adca461e9a85dfb7 | Mailing List Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 04:52
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugs.chromium.org/p/webm/issues/detail?id=1605 - Permissions Required, Third Party Advisory | |
References | () https://chromium.googlesource.com/webm/libwebm/+/2427abe0bde234987ed005a3adca461e9a85dfb7 - Mailing List, Patch, Third Party Advisory |
Information
Published : 2019-03-13 16:29
Updated : 2024-11-21 04:52
NVD link : CVE-2019-9746
Mitre link : CVE-2019-9746
CVE.ORG link : CVE-2019-9746
JSON object : View
Products Affected
webmproject
- libwebm
CWE
CWE-476
NULL Pointer Dereference