First published: Wed Jun 02 2021(Updated: )
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the filter_frame function in vf_tile.c.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg FFmpeg | =4.2 | |
debian/ffmpeg | 7:4.3.7-0+deb11u1 7:4.3.8-0+deb11u1 7:5.1.6-0+deb12u1 7:7.0.2-3 7:7.1-3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Denial of Service vulnerability in FFmpeg 4.2 is CVE-2020-22051.
The vulnerability is a memory leak in the filter_frame function in vf_tile.c.
FFmpeg 4.2 and earlier versions are affected by this vulnerability.
To fix this vulnerability, update FFmpeg to version 4.3 or later.
You can find more information about this vulnerability at the following references: [CVE-2020-22051](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-22051), [FFmpeg Trac Ticket](https://trac.ffmpeg.org/ticket/8313), [FFmpeg Git Commit](http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=673fce6d40d9a594fb7a0ea17d296b7d3d9ea856).