CVE-2017-1000460
In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and get_ue_golomb(&gb) is called on an uninitialized get_bits context, which causes a NULL deref exception.
- Libav
- = 13_dev0
- Fix
- Available
- CVSS 3.0
- 6.5 MEDIUM
- EPSS
- 0.5% (39th percentile)
- Weakness
- CWE-476
- NVD status
- Modified
- Published
- 2018-01-03
CVE-2017-1000460 at NVD
No indexed exploits for CVE-2017-1000460 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2017-1000460 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.