security advisorycriticalsoftware update
Several issues have been found in ffmpeg, a package of tools for transcoding, streaming and playing of multimedia files. The issues are related to out-of-bounds read, assert errors and NULL . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4073-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz March 01, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : ffmpeg Version : 7:4.3.8-0+deb11u3 CVE ID : CVE-2025-0518 CVE-2025-22919 CVE-2025-22921 Several issues have been found in ffmpeg, a package of tools for transcoding, streaming and playing of multimedia files. The issues are related to out-of-bounds read, assert errors and NULL pointer dereferences. For Debian 11 bullseye, these problems have been fixed in version 7:4.3.8-0+deb11u3. We recommend that you upgrade your ffmpeg packages. For the detailed security status of ffmpeg please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/ffmpeg Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Ubuntu LTS USN-5071-1 tackles GIMP vulnerabilities; updates advised for protection enhancements and graphic stability.. Debian LTS, ffmpeg security, multimedia tools, package updates, out-of-bounds errors. . Severity: Critical. LinuxSecurity.com Team
Feb 28, 2025
•Critical
Debian LTS