SUSE-SU-2025:02352-1
Dashboard / Vulnerabilities / SUSE-SU-2025:02352-1
SUSE-SU-2025:02352-1
Summary: Security update for ffmpeg
Details: This update for ffmpeg fixes the following issues: - CVE-2022-1475: Fixed integer overflow in g729_parse() in llibavcodec/g729_parser.c (bsc#1198898). - CVE-2024-36616: Fixed integer overflow in the component libavformat/westwood_vqa.c (bsc#1234018). - CVE-2024-36617: Fixed integer overflow vulnerability in the FFmpeg CAF decoder (bsc#1234019). - CVE-2024-36618: Fixed vulnerability in the AVI demuxer of the libavformat library (bsc#1234020).
References: https://www.suse.com/support/update/announcement/2025/suse-su-202502352-1/, https://bugzilla.suse.com/1198898, https://bugzilla.suse.com/1234018, https://bugzilla.suse.com/1234019, https://bugzilla.suse.com/1234020, https://www.suse.com/security/cve/CVE-2022-1475, https://www.suse.com/security/cve/CVE-2024-36616, https://www.suse.com/security/cve/CVE-2024-36617, https://www.suse.com/security/cve/CVE-2024-36618
Affected packages
Package
Name: ffmpeg
Purl: pkg:rpm/suse/ffmpeg&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP6
Affected ranges
Type: ECOSYSTEM
Events:
