CVE-2024-32230

FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a negative-size-param bug at libavcodec/mpegvideo_enc.c:1216:21 in load_input_picture in FFmpeg7.0
References
Link Resource
https://trac.ffmpeg.org/ticket/10952 Exploit Vendor Advisory
https://trac.ffmpeg.org/ticket/10952 Exploit Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ffmpeg:ffmpeg:7.0:*:*:*:*:*:*:*

History

22 Aug 2024, 13:24

Type Values Removed Values Added
First Time Ffmpeg ffmpeg
Ffmpeg
CPE cpe:2.3:a:ffmpeg:ffmpeg:7.0:*:*:*:*:*:*:*
CWE CWE-120
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References () https://trac.ffmpeg.org/ticket/10952 - () https://trac.ffmpeg.org/ticket/10952 - Exploit, Vendor Advisory

01 Jul 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-01 21:15

Updated : 2025-03-14 17:15


NVD link : CVE-2024-32230

Mitre link : CVE-2024-32230


JSON object : View

Products Affected

ffmpeg

  • ffmpeg
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')