An issue was discovered in faad2 through 2.10.0. A NULL pointer dereference exists in the function get_sample() located in output.c. It allows an attacker to cause Denial of Service.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Faad2 | Faad2_project | * | 2.10.0 (including) | 
| Faad2 | Ubuntu | bionic | * | 
| Faad2 | Ubuntu | esm-apps/bionic | * | 
| Faad2 | Ubuntu | esm-apps/focal | * | 
| Faad2 | Ubuntu | esm-apps/xenial | * | 
| Faad2 | Ubuntu | esm-infra-legacy/trusty | * | 
| Faad2 | Ubuntu | focal | * | 
| Faad2 | Ubuntu | hirsute | * | 
| Faad2 | Ubuntu | impish | * | 
| Faad2 | Ubuntu | kinetic | * | 
| Faad2 | Ubuntu | trusty | * | 
| Faad2 | Ubuntu | trusty/esm | * | 
| Faad2 | Ubuntu | xenial | * | 
| Welle.io | Ubuntu | focal | * | 
| Welle.io | Ubuntu | hirsute | * | 
| Welle.io | Ubuntu | impish | * | 
| Welle.io | Ubuntu | kinetic | * | 
| Welle.io | Ubuntu | lunar | * | 
| Welle.io | Ubuntu | mantic | * | 
| Welle.io | Ubuntu | oracular | * | 
| Welle.io | Ubuntu | trusty | * | 
| Welle.io | Ubuntu | xenial | * | 
| Xine-lib | Ubuntu | trusty | * | 
| Xine-lib | Ubuntu | xenial | * |