Search CVE reports


Toggle filters

1 – 10 of 337 results


CVE-2025-8586

Medium priority
Needs evaluation

A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavformat/utils.c of the component MPEG File Parser. The manipulation leads to null...

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release
Show less packages

CVE-2025-8585

Medium priority
Needs evaluation

A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the function main of the file /avtools/avconv.c of the component DSS File Demuxer. The manipulation leads to double...

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release
Show less packages

CVE-2025-8584

Medium priority
Needs evaluation

A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file libavutil/buffer.c of the component AVI File Parser. The manipulation leads to...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-7700

Medium priority
Needs evaluation

[NULL Pointer Dereference in FFmpeg ALS Decoder (libavcodec/alsdec.c)]

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release
Show less packages

CVE-2025-48175

Medium priority
Needs evaluation

In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.

1 affected package

libavif

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libavif Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2025-48174

Medium priority
Needs evaluation

In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.

1 affected package

libavif

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libavif Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2025-47808

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-libav1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation Needs evaluation
gst-plugins-base1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-good1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-ugly1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-python1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-rtsp-server1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-editing-services1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-vaapi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qt-gstreamer Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rust-gst-plugin-version-helper Needs evaluation Not in release
rust-gstreamer Needs evaluation Not in release
rust-gstreamer-allocators Not in release Not in release
rust-gstreamer-allocators-sys Not in release Not in release
rust-gstreamer-audio Needs evaluation Not in release
rust-gstreamer-audio-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-base Needs evaluation Not in release
rust-gstreamer-base-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-gl Needs evaluation Not in release
rust-gstreamer-gl-egl Needs evaluation Not in release
rust-gstreamer-gl-egl-sys Needs evaluation Not in release
rust-gstreamer-gl-sys Needs evaluation Not in release
rust-gstreamer-gl-wayland Needs evaluation Not in release
rust-gstreamer-gl-wayland-sys Needs evaluation Not in release
rust-gstreamer-gl-x11 Needs evaluation Not in release
rust-gstreamer-gl-x11-sys Needs evaluation Not in release
rust-gstreamer-pbutils Needs evaluation Not in release
rust-gstreamer-pbutils-sys Needs evaluation Not in release
rust-gstreamer-play Needs evaluation Not in release
rust-gstreamer-play-sys Needs evaluation Not in release
rust-gstreamer-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-video Needs evaluation Not in release
rust-gstreamer-video-sys Needs evaluation Needs evaluation Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47807

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-libav1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation Needs evaluation
gst-plugins-base1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-good1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-ugly1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-python1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-rtsp-server1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-editing-services1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-vaapi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qt-gstreamer Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rust-gst-plugin-version-helper Needs evaluation Not in release
rust-gstreamer Needs evaluation Not in release
rust-gstreamer-allocators Not in release Not in release
rust-gstreamer-allocators-sys Not in release Not in release
rust-gstreamer-audio Needs evaluation Not in release
rust-gstreamer-audio-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-base Needs evaluation Not in release
rust-gstreamer-base-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-gl Needs evaluation Not in release
rust-gstreamer-gl-egl Needs evaluation Not in release
rust-gstreamer-gl-egl-sys Needs evaluation Not in release
rust-gstreamer-gl-sys Needs evaluation Not in release
rust-gstreamer-gl-wayland Needs evaluation Not in release
rust-gstreamer-gl-wayland-sys Needs evaluation Not in release
rust-gstreamer-gl-x11 Needs evaluation Not in release
rust-gstreamer-gl-x11-sys Needs evaluation Not in release
rust-gstreamer-pbutils Needs evaluation Not in release
rust-gstreamer-pbutils-sys Needs evaluation Not in release
rust-gstreamer-play Needs evaluation Not in release
rust-gstreamer-play-sys Needs evaluation Not in release
rust-gstreamer-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-video Needs evaluation Not in release
rust-gstreamer-video-sys Needs evaluation Needs evaluation Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47806

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-libav1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation Needs evaluation
gst-plugins-base1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-good1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-ugly1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-python1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-rtsp-server1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-editing-services1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-vaapi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qt-gstreamer Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rust-gst-plugin-version-helper Needs evaluation Not in release
rust-gstreamer Needs evaluation Not in release
rust-gstreamer-allocators Not in release Not in release
rust-gstreamer-allocators-sys Not in release Not in release
rust-gstreamer-audio Needs evaluation Not in release
rust-gstreamer-audio-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-base Needs evaluation Not in release
rust-gstreamer-base-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-gl Needs evaluation Not in release
rust-gstreamer-gl-egl Needs evaluation Not in release
rust-gstreamer-gl-egl-sys Needs evaluation Not in release
rust-gstreamer-gl-sys Needs evaluation Not in release
rust-gstreamer-gl-wayland Needs evaluation Not in release
rust-gstreamer-gl-wayland-sys Needs evaluation Not in release
rust-gstreamer-gl-x11 Needs evaluation Not in release
rust-gstreamer-gl-x11-sys Needs evaluation Not in release
rust-gstreamer-pbutils Needs evaluation Not in release
rust-gstreamer-pbutils-sys Needs evaluation Not in release
rust-gstreamer-play Needs evaluation Not in release
rust-gstreamer-play-sys Needs evaluation Not in release
rust-gstreamer-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-video Needs evaluation Not in release
rust-gstreamer-video-sys Needs evaluation Needs evaluation Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47219

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-libav1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation Needs evaluation
gst-plugins-base1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-good1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-ugly1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-python1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-rtsp-server1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-editing-services1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-vaapi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qt-gstreamer Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rust-gst-plugin-version-helper Needs evaluation Not in release
rust-gstreamer Needs evaluation Not in release
rust-gstreamer-allocators Not in release Not in release
rust-gstreamer-allocators-sys Not in release Not in release
rust-gstreamer-audio Needs evaluation Not in release
rust-gstreamer-audio-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-base Needs evaluation Not in release
rust-gstreamer-base-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-gl Needs evaluation Not in release
rust-gstreamer-gl-egl Needs evaluation Not in release
rust-gstreamer-gl-egl-sys Needs evaluation Not in release
rust-gstreamer-gl-sys Needs evaluation Not in release
rust-gstreamer-gl-wayland Needs evaluation Not in release
rust-gstreamer-gl-wayland-sys Needs evaluation Not in release
rust-gstreamer-gl-x11 Needs evaluation Not in release
rust-gstreamer-gl-x11-sys Needs evaluation Not in release
rust-gstreamer-pbutils Needs evaluation Not in release
rust-gstreamer-pbutils-sys Needs evaluation Not in release
rust-gstreamer-play Needs evaluation Not in release
rust-gstreamer-play-sys Needs evaluation Not in release
rust-gstreamer-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-video Needs evaluation Not in release
rust-gstreamer-video-sys Needs evaluation Needs evaluation Needs evaluation
Show all 35 packages Show less packages