Wind River Support Network

HomeDefectsLIN1023-4744
Fixed

LIN1023-4744 : Security Advisory - ffmpeg - CVE-2023-49528

Created: Apr 14, 2024    Updated: May 28, 2025
Resolved Date: May 25, 2025
Found In Version: 10.23.30.1
Fix Version: 10.23.30.17
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

Buffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to execute arbitrary code and cause a denial of service (DoS) via the af_dialoguenhance.c:261:5 in the de_stereo component.

CREATE(Triage):(User=admin) CVE-2023-49528 (https://nvd.nist.gov/vuln/detail/CVE-2023-49528)

CVEs


Live chat
Online