CVE-2025-8586

A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavformat/utils.c of the component MPEG File Parser. The manipulation leads to null pointer dereference. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The bug was initially reported by the researcher to the wrong project. This vulnerability only affects products that are no longer supported by the maintainer.
CVSS

No CVSS.

Configurations

No configuration.

History

06 Aug 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 3.3
v2 : unknown
v3 : unknown
CWE CWE-404
CWE-476
References () https://vuldb.com/?submit.621826 - () https://vuldb.com/?submit.621826 -

05 Aug 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-05 18:15

Updated : 2025-08-06 15:15


NVD link : CVE-2025-8586

Mitre link : CVE-2025-8586


JSON object : View

Products Affected

No product.

CWE

No CWE.