CVE-2020-22028: Buffer Overflow
Published May 26, 2021
·Updated
Buffer Overflow vulnerability exists in FFmpeg 4.2 in filtervertically8 at libavfilter/vfavgblur.c, which could cause a remote Denial of Service.
Affected Software
4 affected componentsFixes available
debian/ffmpeg
7:4.3.7-0+deb11u17:4.3.8-0+deb11u17:5.1.6-0+deb12u17:7.0.2-37:7.1-3
FFmpeg FFmpeg=4.2
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Remediation
Event History
May 26, 2021
CVE Published
via MITRE·08:39 PM
Data Sourced
via MITRE·08:39 PM
Description
Jan 11, 2024
Data Sourced
via Launchpad·11:45 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:25 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-22028?
The severity of CVE-2020-22028 is high.
2
How does the Buffer Overflow vulnerability in FFmpeg 4.2 affect me?
The Buffer Overflow vulnerability in FFmpeg 4.2 can cause a remote Denial of Service attack.
3
Which version of FFmpeg is affected by CVE-2020-22028?
Versions 4.2 and below of FFmpeg are affected by CVE-2020-22028.
4
How can I fix the Buffer Overflow vulnerability in FFmpeg?
To fix the Buffer Overflow vulnerability in FFmpeg, update to version 7:3.4.11-0ubuntu0.1 or later.
5
Where can I find more information about CVE-2020-22028?
You can find more information about CVE-2020-22028 on the CVE website and the Ubuntu security notices.