libavformat/movenc.c in FFmpeg 3.2 and 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by-zero error) with a user crafted audio file when converting to the MOV audio format.
{ "vanir_signatures": [ { "deprecated": false, "signature_type": "Function", "target": { "file": "libavformat/movenc.c", "function": "mov_write_audio_tag" }, "source": "https://github.com/ffmpeg/ffmpeg/commit/fa19fbcf712a6a6cc5a5cfdc3254a97b9bce6582", "digest": { "function_hash": "102827977244515592418039999533830258363", "length": 4429.0 }, "id": "CVE-2018-14395-81cf19f1", "signature_version": "v1" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "libavformat/movenc.c", "function": "mov_write_audio_tag" }, "source": "https://github.com/ffmpeg/ffmpeg/commit/2c0e98a0b478284bdff6d7a4062522605a8beae5", "digest": { "function_hash": "44736351853163418595392144319364648043", "length": 3886.0 }, "id": "CVE-2018-14395-c30bc0a5", "signature_version": "v1" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "libavformat/movenc.c" }, "source": "https://github.com/ffmpeg/ffmpeg/commit/fa19fbcf712a6a6cc5a5cfdc3254a97b9bce6582", "digest": { "line_hashes": [ "88413214916599869005262271461099492956", "99490026392498700389421665331387618439", "22818687448778883533567042380121543425", "148013509794614994762799630272833705423" ], "threshold": 0.9 }, "id": "CVE-2018-14395-efe74b9b", "signature_version": "v1" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "libavformat/movenc.c" }, "source": "https://github.com/ffmpeg/ffmpeg/commit/2c0e98a0b478284bdff6d7a4062522605a8beae5", "digest": { "line_hashes": [ "88413214916599869005262271461099492956", "99490026392498700389421665331387618439", "22818687448778883533567042380121543425", "148013509794614994762799630272833705423" ], "threshold": 0.9 }, "id": "CVE-2018-14395-f544f8fd", "signature_version": "v1" } ] }