CVE-2024-35369

NameCVE-2024-35369
DescriptionIn FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer overflow conditions, potentially resulting in undefined behavior or crashes during the decoding process.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
ffmpeg (PTS)stretch (security)7:3.2.18-0+deb9u1vulnerable
stretch (lts), stretch7:3.2.19-0+deb9u5vulnerable
buster, buster (lts)7:4.1.11-0+deb10u2vulnerable
buster (security)7:4.1.11-0+deb10u1vulnerable
bullseye7:4.3.7-0+deb11u1vulnerable
bullseye (security)7:4.3.8-0+deb11u1vulnerable
bookworm (security), bookworm7:5.1.6-0+deb12u1vulnerable
sid, trixie7:7.1-3fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
ffmpegsource(unstable)7:7.0.1-3

Notes

[bookworm] - ffmpeg <postponed> (Pick up when fixed in 5.1.x)
https://github.com/ffmpeg/ffmpeg/commit/0895ef0d6d6406ee6cd158fc4d47d80f201b8e9c (n7.0)

Search for package or bug name: Reporting problems