CVE-2024-35367: Critical severity ffmpeg vulnerability
Published Nov 29, 2024
·Updated
FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dspaltivec.c, static const vecs8 hsubpelfiltersouter
Affected Software
2 affected components
FFmpeg FFmpeg
FFmpeg FFmpeg=6.1.1
Remediation
Event History
Nov 29, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-35367?
CVE-2024-35367 has a medium severity rating due to its potential to cause an out-of-bounds read.
2
How do I fix CVE-2024-35367?
To fix CVE-2024-35367, update FFmpeg to a patched version that addresses this vulnerability.
3
What are the potential impacts of CVE-2024-35367?
CVE-2024-35367 can lead to application crashes or unintended information disclosure.
4
Which versions of FFmpeg are affected by CVE-2024-35367?
CVE-2024-35367 affects FFmpeg version n6.1.1.
5
Is there a workaround for CVE-2024-35367?
There is no known workaround for CVE-2024-35367; updating to a secure version is recommended.