ZeroHour

CVE-2017-12801

PoC ×2
CVSS 3.0
6.5 medium
EPSS
2%p83
Published
()
Modified
Description

The UpdateDataSize function in ebmlmaster.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.

Vendors
matroska
Products
libebml2, mkclean, mkvalidator
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.