libavcodec in FFmpeg 4.0 may trigger a NULL pointer dereference if the studio profile is incorrectly detected while converting a crafted AVI file to MPEG4, leading to a denial of service, related to idctdsp.c and mpegvideo.c.
[
{
"digest": {
"line_hashes": [
"203287591705143062107314822259186818250",
"282324406643675235954044795659311484560",
"333694940045075628046426726534229330266",
"163351085974951288276078275623224076606"
],
"threshold": 0.9
},
"target": {
"file": "libavcodec/mpegvideo.c"
},
"deprecated": false,
"id": "CVE-2018-12460-33b6afd3",
"signature_version": "v1",
"source": "https://github.com/ffmpeg/ffmpeg/commit/b3332a182f8ba33a34542e4a0370f38b914ccf7d",
"signature_type": "Line"
},
{
"digest": {
"length": 2672.0,
"function_hash": "28671708147843153440469134798873711068"
},
"target": {
"file": "libavcodec/idctdsp.c",
"function": "ff_idctdsp_init"
},
"deprecated": false,
"id": "CVE-2018-12460-35b548de",
"signature_version": "v1",
"source": "https://github.com/ffmpeg/ffmpeg/commit/b3332a182f8ba33a34542e4a0370f38b914ccf7d",
"signature_type": "Function"
},
{
"digest": {
"line_hashes": [
"126536519982937281418884318443799011247",
"250889362032603908287582132871077149337",
"290159734777921403366208928525488705450",
"260773072982675090556546599099380073658"
],
"threshold": 0.9
},
"target": {
"file": "libavcodec/idctdsp.c"
},
"deprecated": false,
"id": "CVE-2018-12460-9110840e",
"signature_version": "v1",
"source": "https://github.com/ffmpeg/ffmpeg/commit/b3332a182f8ba33a34542e4a0370f38b914ccf7d",
"signature_type": "Line"
},
{
"digest": {
"length": 750.0,
"function_hash": "39856762836001306115006842251816044728"
},
"target": {
"file": "libavcodec/mpegvideo.c",
"function": "ff_mpv_idct_init"
},
"deprecated": false,
"id": "CVE-2018-12460-b8d9faf7",
"signature_version": "v1",
"source": "https://github.com/ffmpeg/ffmpeg/commit/b3332a182f8ba33a34542e4a0370f38b914ccf7d",
"signature_type": "Function"
},
{
"digest": {
"line_hashes": [
"130799097354866713191710292741187585976",
"256346152185321240798215610385516487639",
"73658507746507163792722605294300294903",
"73753474191504460849366634306293844425"
],
"threshold": 0.9
},
"target": {
"file": "libavcodec/idctdsp.h"
},
"deprecated": false,
"id": "CVE-2018-12460-f62ef0ba",
"signature_version": "v1",
"source": "https://github.com/ffmpeg/ffmpeg/commit/b3332a182f8ba33a34542e4a0370f38b914ccf7d",
"signature_type": "Line"
}
]