{ "schema_version": "1.4.0", "id": "GHSA-6cpv-jrx7-frg6", "modified": "2025-04-11T03:47:05Z", "published": "2022-05-14T02:21:02Z", "aliases": [ "CVE-2011-2161" ], "details": "The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and other products, allows remote attackers to cause a denial of service (application crash) via an APE (aka Monkey's Audio) file that contains a header but no frames.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-2161" }, { "type": "WEB", "url": "https://github.com/FFmpeg/FFmpeg/commit/8312e3fc9041027a33c8bc667bb99740fdf41dd5" }, { "type": "WEB", "url": "http://ffmpeg.mplayerhq.hu" }, { "type": "WEB", "url": "http://packetstorm.linuxsecurity.com/1103-exploits/vlc105-dos.txt" } ], "database_specific": { "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2011-05-20T22:55:00Z" } }