Bugzilla – Bug 1186864
VUL-1: CVE-2020-22056: ffmpeg: A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the config_input function in af_acrossover.c.
Last modified: 2021-06-04 12:43:08 UTC
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the config_input function in af_acrossover.c. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-22056 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-22056 https://trac.ffmpeg.org/ticket/8304
The following packages don't implement the affected function `static av_cold void uninit(AVFilterContext *ctx)`: - SUSE:SLE-15-SP2:Update/ffmpeg 3.4.2 - SUSE:SLE-15:Update/ffmpeg 3.4.2 The following package is already patched: - openSUSE:Factory/ffmpeg-4 4.4