Search CVE reports


Toggle filters

11 – 20 of 337 results


CVE-2025-47183

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-libav1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation Needs evaluation
gst-plugins-base1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-good1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-plugins-ugly1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-python1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gst-rtsp-server1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-editing-services1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer-vaapi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gstreamer1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qt-gstreamer Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rust-gst-plugin-version-helper Needs evaluation Not in release
rust-gstreamer Needs evaluation Not in release
rust-gstreamer-allocators Not in release Not in release
rust-gstreamer-allocators-sys Not in release Not in release
rust-gstreamer-audio Needs evaluation Not in release
rust-gstreamer-audio-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-base Needs evaluation Not in release
rust-gstreamer-base-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-gl Needs evaluation Not in release
rust-gstreamer-gl-egl Needs evaluation Not in release
rust-gstreamer-gl-egl-sys Needs evaluation Not in release
rust-gstreamer-gl-sys Needs evaluation Not in release
rust-gstreamer-gl-wayland Needs evaluation Not in release
rust-gstreamer-gl-wayland-sys Needs evaluation Not in release
rust-gstreamer-gl-x11 Needs evaluation Not in release
rust-gstreamer-gl-x11-sys Needs evaluation Not in release
rust-gstreamer-pbutils Needs evaluation Not in release
rust-gstreamer-pbutils-sys Needs evaluation Not in release
rust-gstreamer-play Needs evaluation Not in release
rust-gstreamer-play-sys Needs evaluation Not in release
rust-gstreamer-sys Needs evaluation Needs evaluation Needs evaluation
rust-gstreamer-video Needs evaluation Not in release
rust-gstreamer-video-sys Needs evaluation Needs evaluation Needs evaluation
Show all 35 packages Show less packages

CVE-2025-25473

Medium priority

Some fixes available 7 of 8

FFmpeg git master before commit c08d30 was discovered to contain a NULL pointer dereference via the component libavformat/mov.c.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-25471

Medium priority
Needs evaluation

FFmpeg git master before commit fd1772 was discovered to contain a NULL pointer dereference via the component libavformat/mov.c.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-25469

Medium priority
Needs evaluation

FFmpeg git-master before commit d5873b was discovered to contain a memory leak in the component libavutil/iamf.c.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-25468

Medium priority
Needs evaluation

FFmpeg git-master before commit d5873b was discovered to contain a memory leak in the component libavutil/mem.c.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-25467

Medium priority
Needs evaluation

Insufficient tracking and releasing of allocated used memory in libx264 git master allows attackers to execute arbitrary code via creating a crafted AAC file.

3 affected packages

ffmpeg, libav, x264

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release Not in release
x264 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-22921

Medium priority

Some fixes available 4 of 5

FFmpeg git-master,N-113007-g8d24a28d06 was discovered to contain a segmentation violation via the component /libavcodec/jpeg2000dec.c.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Fixed Fixed Not affected Not affected
Show less packages

CVE-2025-22920

Medium priority
Needs evaluation

A heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger a memory corruption via supplying a crafted media file in avformat when processing tile grid group streams. This can lead to a Denial...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-22919

Medium priority

Some fixes available 6 of 7

A reachable assertion in FFmpeg git-master commit N-113007-g8d24a28d06 allows attackers to cause a Denial of Service (DoS) via opening a crafted AAC file.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-1816

Medium priority

Some fixes available 1 of 2

A vulnerability classified as problematic has been found in FFmpeg up to 6e26f57f672b05e7b8b052007a83aef99dc81ccb. This affects the function audio_element_obu of the file libavformat/iamf_parse.c of the component IAMF File...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages