Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
Debian: Security Advisory for ffmpeg (DSA-4990-1)
Information
Severity
Severity
High
Family
Family
Debian Local Security Checks
CVSSv2 Base
CVSSv2 Base
7.5
CVSSv2 Vector
CVSSv2 Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Solution Type
Solution Type
Vendor Patch
Created
Created
2 years ago
Modified
Modified
2 years ago
Summary
The remote host is missing an update for the 'ffmpeg' package(s) announced via the DSA-4990-1 advisory.
Insight
Insight
Several vulnerabilities have been discovered in the FFmpeg multimedia framework, which could result in denial of service or potentially the execution of arbitrary code if malformed files/streams are processed.
Affected Software
Affected Software
'ffmpeg' package(s) on Debian Linux.
Detection Method
Detection Method
Checks if a vulnerable package version is present on the target host.
Solution
Solution
For the oldstable distribution (buster), these problems have been fixed in version 7:4.1.8-0+deb10u1. We recommend that you upgrade your ffmpeg packages.
Common Vulnerabilities and Exposures (CVE)
- CVE-2020-20445
- CVE-2020-20446
- CVE-2020-20453
- CVE-2020-21041
- CVE-2020-22015
- CVE-2020-22016
- CVE-2020-22017
- CVE-2020-22019
- CVE-2020-22020
- CVE-2020-22021
- CVE-2020-22022
- CVE-2020-22023
- CVE-2020-22025
- CVE-2020-22026
- CVE-2020-22027
- CVE-2020-22028
- CVE-2020-22029
- CVE-2020-22030
- CVE-2020-22031
- CVE-2020-22032
- CVE-2020-22033
- CVE-2020-22034
- CVE-2020-22035
- CVE-2020-22036
- CVE-2020-22037
- CVE-2020-22049
- CVE-2020-22054
- CVE-2020-35965
- CVE-2021-38114
- CVE-2021-38171
- CVE-2021-38291