CVE-2019-12730

aa_read_header in libavformat/aadec.c in FFmpeg before 3.2.14 and 4.x before 4.1.4 does not check for sscanf failure and consequently allows use of uninitialized variables.
Configurations

Configuration 1

cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*

Information

Published : 2019-06-04 02:29

Updated : 2020-08-24 05:37


NVD link : CVE-2019-12730

Mitre link : CVE-2019-12730

Products Affected
No products.
CWE