CVE-2012-0848: Ffmpeg
Medium severity, CVSS 4.3. EPSS: 2.2% chance of exploitation in the next 30 days.
Heap-based buffer overflow in the ws_snd_decode_frame function in libavcodec/ws-snd1.c in FFmpeg 0.9.1 allows remote attackers to cause a denial of service (application crash) via a crafted media file, related to an incorrect calculation, aka "wrong samples count."
Affected products
- Ffmpeg Ffmpeg: version 0.9.1 only
Published 2012-08-20. Last modified 2026-06-16.