CVE-2015-5479: Libav

Medium severity, CVSS 6.5. EPSS: 2% chance of exploitation in the next 30 days.

The ff_h263_decode_mba function in libavcodec/ituh263dec.c in Libav before 11.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a file with crafted dimensions.

Affected products

  • Libav Libav: up to and including 11.4
  • Opensuse Leap: version 42.1 only
  • Ubuntu Ubuntu: version 12.04 only

Published 2016-04-19. Last modified 2026-06-17.