CVE-2016-7972: Fedoraproject Fedora
High severity, CVSS 7.5. EPSS: 5.4% chance of exploitation in the next 30 days.
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation failure) via unspecified vectors.
Affected products
- Fedoraproject Fedora: version 23 only; version 24 only; version 25 only
- Libass Project Libass: up to and including 0.13.3
- Opensuse Leap: version 42.1 only
- Opensuse Opensuse: version 13.2 only
Published 2017-03-03. Last modified 2026-06-17.