CVE 5.3 MEDIUM

Ffmpeg: null pointer dereference in ffmpeg als decoder (libavcodec/alsdec.c)_CVE-2025-7700

5.3 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Description

A flaw was found in FFmpeg’s ALS audio decoder, where it does not properly check for memory allocation failures. This can cause the application to crash when processing certain malformed audio files. While it does not lead to data theft or system control, it can be used to disrupt services and cause a denial of service.

Basic Information

ID CVE-2025-7700
Source redhat
Published Nov 7, 2025 at 18:59
Modified Nov 7, 2025 at 19:08

Affected Product

Affected Versions 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.