ZeroHour

CVE-2024-36615

CVSS 3.1
5.9 medium
EPSS
<1%p37
Published
()
Modified
Description

FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding parameters were being exported, as the side data would be attached in the decoder thread while being read in the output thread.

Vendors
ffmpeg
Products
ffmpeg
Weakness
CWE-362
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.