Logo
vulnerabilityCVE-2025-7700
Name
CVE-2025-7700
Source
NVD ( link)Debian ( link)
Description
A flaw was found in FFmpeg’s ALS audio decoder, where it does not properly check for memory allocation failures. This can cause the application to crash when processing certain malformed audio files. While it does not lead to data theft or system control, it can be used to disrupt services and cause a denial of service.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
ffmpeg
Patched

Vulnerability Ratings#


5.3
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
6.1.5
Not Affected
buildroot
master
6.1.5
Not Affected
openwrt
master
6.1.4-r2
Not Affected
openwrt
openwrt-25.12
6.1.4-r1
Not Affected
yocto
master
8.1.1
Not Affected
yocto
scarthgap
6.1.4
Not Affected

Resolved with patches#


ffmpeg (yocto:kirkstone)

#
Title
Author
Resolve
1
libavcodec/alsdec.c: Add check for av_malloc_array() and
Jiasheng Jiang <jiashengjiangcool@gmail.com>
CVE-2025-7700