CVE-2025-22920 – FFmpeg Heap Buffer Overflow Denial of Service

The following table lists the changes that have been made to the
CVE-2025-22920 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Feb. 18, 2025

    Action Type Old Value New Value
    Added Description A heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger a memory corruption via supplying a crafted media file in avformat when processing tile grid group streams. This can lead to a Denial of Service (DoS).
    Added Reference https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/4bf784c0e5615c3f934e677d5de093a8be7da7ae
    Added Reference https://trac.ffmpeg.org/ticket/11389
Share the Post:

Related Posts