First published: Fri Jan 03 2025(Updated: )
FFmpeg version n6.1.1 has a double-free vulnerability in the fftools/ffmpeg_mux_init.c component of FFmpeg, specifically within the new_stream_audio function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35365 has a high severity due to its potential to cause a double-free vulnerability, which can lead to application crashes or unauthorized code execution.
To fix CVE-2024-35365, update to the latest version of FFmpeg that includes the patch addressing this vulnerability.
CVE-2024-35365 affects FFmpeg version n6.1.1 and prior versions.
CVE-2024-35365 impacts the fftools/ffmpeg_mux_init.c component within FFmpeg.
The double-free vulnerability in CVE-2024-35365 is specifically within the new_stream_audio function.