CNNVD-202512-3469 Information

CNNVD ID

CNNVD-202512-3469

CVE-2025-63757

  • CNNVD Published: 2025-12-18

Description (Chinese)

FFmpeg是FFmpeg团队的一套可录制、转换以及流化音视频的完整解决方案。 FFmpeg 8.0版本存在安全漏洞,该漏洞源于yuv2ya16_X_c_template函数整数溢出,可能导致内存损坏。

Description (English)

FFmpeg is a complete set of records, conversions and fluidizations for the FFmpeg team. FFmpeg version 8.0 contains a security loophole that originates from the integer spill of the yuv2ya16 X c template function, which may cause memory damage.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

FFmpeg

Published

2025-12-18

Last Modified

2026-02-24

References

https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/20698 https://ffmpeg.org/security.html https://gist.github.com/miora-sora/43c1c5616dd5b4f960a9d20296ef4833

Patch

https://ffmpeg.org/

Share on: