Logo
vulnerabilityCVE-2024-31582
Name
CVE-2024-31582
Source
NVD ( link)Debian ( link)
Description
FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function of libavfilter/vf_codecview.c. This vulnerability allows attackers to cause undefined behavior or a Denial of Service (DoS) via crafted input.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
ffmpeg
Exploitable

Vulnerability Ratings#


7.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
6.1.5
Exploitable
buildroot
master
6.1.5
Exploitable
openwrt
openwrt-25.12
6.1.4-r1
Exploitable
yocto
kirkstone
5.0.3
Patched
yocto
master
8.1.1
Not Affected
yocto
scarthgap
6.1.4
Exploitable

Resolved with patches#


ffmpeg (yocto:kirkstone)

#
Title
Author
Resolve
1
avfilter/vf_codecview: fix heap buffer overflow
Zhao Zhili <zhilizhao@tencent.com>
CVE-2024-31582