Bugzilla – Bug 1223304
VUL-0: CVE-2023-51798: ffmpeg,ffmpeg-4: floating point exception(FPE) via the interpolate function in libavfilter/vf_minterpolate.c
Last modified: 2024-05-17 09:23:49 UTC
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating point exception (FPE) error at libavfilter/vf_minterpolate.c:1078:60 in interpolate. References: https://ffmpeg.org/ http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-51798 https://www.cve.org/CVERecord?id=CVE-2023-51798 https://trac.ffmpeg.org/ticket/10758 https://bugzilla.redhat.com/show_bug.cgi?id=2276120
It seems like the patch for this issue is the following: https://git.ffmpeg.org/gitweb/ffmpeg.git/commit/68146f06f852078866b3ef1564556e3a272920c7
This is an autogenerated message for OBS integration: This bug (1223304) was mentioned in https://build.opensuse.org/request/show/1170215 Factory / ffmpeg-4