CNNVD-202510-828 Information

CNNVD ID

CNNVD-202510-828

CVE-2025-59729

  • CNNVD Published: 2025-10-06

Description (Chinese)

ffmpeg是meh.个人开发者的一个rust库。 FFmpeg 8.0之前版本存在安全漏洞,该漏洞源于解析DHAV文件头时整数下溢,可能导致读取分配缓冲区前的持续时间。

Description (English)

ffmpeg is a rust bank of meh. There was a security loophole in the pre-FFmpeg 8.0 version, which stemmed from the integer run-down of the DHAV file, which could lead to the readout of the duration of the distribution buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-10-06

Last Modified

2026-02-24

References

https://issuetracker.google.com/433513232

Patch

https://www.ffmpeg.org/download.html

Share on: