Wind River Support Network

HomeDefectsLIN1022-12847
Fixed

LIN1022-12847 : Security Advisory - ffmpeg - CVE-2025-0518

Created: Jan 16, 2025    Updated: Jun 10, 2025
Resolved Date: May 28, 2025
Found In Version: 10.22.33.1
Fix Version: 10.22.33.21
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

Unchecked Return Value, Out-of-bounds Read vulnerability in FFmpeg allows Read Sensitive Constants Within an Executable. This vulnerability is associated with program files  https://github.Com/FFmpeg/FFmpeg/blob/master/libavfilter/af_pan.C .

This issue affects FFmpeg: 7.1.

Issue was fixed:  https://github.com/FFmpeg/FFmpeg/commit/b5b6391d64807578ab872dc58fb8aa621dcfc38a

 https://github.com/FFmpeg/FFmpeg/commit/b5b6391d64807578ab872dc58fb8aa621dcfc38a This issue was discovered by: Simcha Kosman

CREATE(Triage):(User=admin) CVE-2025-0518 (https://nvd.nist.gov/vuln/detail/CVE-2025-0518)

CVEs


Live chat
Online