CVE-2018-5766: Libav
High severity, CVSS 8.8. EPSS: 2.5% chance of exploitation in the next 30 days.
In Libav through 12.2, there is an invalid memcpy in the av_packet_ref function of libavcodec/avpacket.c. Remote attackers could leverage this vulnerability to cause a denial of service (segmentation fault) via a crafted avi file.
Affected products
- Libav Libav: up to and including 12.2
Published 2018-01-18. Last modified 2026-06-17.