First published: Tue Jun 01 2021(Updated: )
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in get_block_row at libavfilter/vf_bm3d.c, which might lead to memory corruption and other potential consequences.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/ffmpeg | 7:4.3.7-0+deb11u1 7:4.3.8-0+deb11u1 7:5.1.6-0+deb12u1 7:7.0.2-3 7:7.1-3 | |
FFmpeg | =4.2 | |
Debian Debian Linux | =10.0 | |
Debian | =10.0 |
https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=0749082eb93ea02fa4b770da86597450cec84054
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-22035 is a heap-based Buffer Overflow vulnerability in FFmpeg 4.2.
The vulnerability exists in get_block_row at libavfilter/vf_bm3d.c in FFmpeg 4.2.
CVE-2020-22035 might lead to memory corruption and other potential consequences.
You can check if your version of FFmpeg is affected by referring to the affected software section and the provided links.
To fix CVE-2020-22035, you should update to the recommended version of FFmpeg mentioned in the affected software section.