CVE-2019-11372: Fedoraproject Fedora

Medium severity, CVSS 6.5. EPSS: 2.5% chance of exploitation in the next 30 days.

An out-of-bounds read in MediaInfoLib::File__Tags_Helper::Synched_Test in Tag/File__Tags.cpp in MediaInfoLib in MediaArea MediaInfo 18.12 leads to a crash.

Affected products

  • Fedoraproject Fedora: version 28 only; version 29 only; version 30 only
  • Mediaarea Mediainfo: version 18.12 only

Published 2019-04-20. Last modified 2026-06-17.