PT-2022-6681 · FFmpeg+6 · Ffmpeg+6

Tej Rathi

·

Published

2022-07-22

·

Updated

2025-08-07

·

CVE-2022-3341

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions FFmpeg (affected versions not specified)
Description A null pointer dereference issue was discovered in the decode main header() function of the libavformat/nutdec.c file. The flaw occurs because the function lacks a check of the return value of avformat new stream() and triggers a null pointer dereference error, causing an application to crash. This issue may allow a remote attacker to cause a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALT-PU-2023-2034
ALT-PU-2023-2095
ALT-PU-2023-4151
ALT-PU-2023-5511
ALT-PU-2024-10869
ALT-PU-2024-10871
BDU:2023-03348
CVE-2022-3341
DLA-3454-1
DSA-5394-1
MGASA-2023-0043
OESA-2024-1759
OESA-2024-1760
OESA-2024-1761
OESA-2024-1831
OPENSUSE-SU-2023_0172-1
OPENSUSE-SU-2023_0206-1
OPENSUSE-SU-2024:12636-1
ROSA-SA-2023-2277
SUSE-SU-2023:0172-1
SUSE-SU-2023:0206-1
SUSE-SU-2023:2115-1
SUSE-SU-2023_0172-1
USN-5958-1

Affected Products

Alt Linux
Astra Linux
Ffmpeg
Linuxmint
Red Os
Suse
Ubuntu