CVE-2025-0518

Severity CVSS v4.0:
MEDIUM
Type:
CWE-125 Out-of-bounds Read
Publication date:
16/01/2025
Last modified:
03/11/2025

Description

Unchecked Return Value, Out-of-bounds Read vulnerability in FFmpeg allows Read Sensitive Constants Within an Executable. This vulnerability is associated with program files https://github.Com/FFmpeg/FFmpeg/blob/master/libavfilter/af_pan.C .<br /> <br /> This issue affects FFmpeg: 7.1.<br /> <br /> Issue was fixed:  https://github.com/FFmpeg/FFmpeg/commit/b5b6391d64807578ab872dc58fb8aa621dcfc38a<br /> <br /> https://github.com/FFmpeg/FFmpeg/commit/b5b6391d64807578ab872dc58fb8aa621dcfc38a This issue was discovered by: Simcha Kosman

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ffmpeg:ffmpeg:7.1:*:*:*:*:*:*:*