USN-7188-1: FFmpeg vulnerability
It was discovered that FFmpeg incorrectly handled certain input, which could lead to an integer overflow. An attacker could possibly use this issue to cause a denial of service by crashing the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7188-1?
The severity of USN-7188-1 is classified as medium due to the potential for denial of service.
How do I fix USN-7188-1?
To fix USN-7188-1, upgrade FFmpeg and related packages to version 7:4.4.2-0ubuntu0.22.04.1+esm6 or later.
What causes the USN-7188-1 vulnerability?
The USN-7188-1 vulnerability is caused by FFmpeg incorrectly handling certain input, leading to an integer overflow.
Which packages are affected by USN-7188-1?
The affected packages include ffmpeg, libavcodec-extra58, libavcodec58, libavdevice58, and several others listed in the advisory.
What versions of Ubuntu are impacted by USN-7188-1?
The USN-7188-1 vulnerability impacts Ubuntu 22.04 and earlier versions that utilize the affected packages.