CVE-2015-6823
EPSS 0.71%Published: 9/6/2015Modified: 4/28/2026
Description
The allocate_buffers function in libavcodec/alac.c in FFmpeg before 2.7.2 does not initialize certain context data, which allows remote attackers to cause a denial of service (segmentation violation) or possibly have unspecified other impact via crafted Apple Lossless Audio Codec (ALAC) data.
Affected packages (1)
- Debian/ffmpegfrom 0, < 7:2.7.2-1