216.73.216.197

CVE-2025-8584

· Published 05/08/2025 17:15 · Modified 05/08/2025 21:06

Labels: CVE-2025-8584 2025-08-05CVE-2025-8584CWE-404[email protected]

Essential information

Published
05/08/2025 17:15
Modified
05/08/2025 21:06
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file libavutil/buffer.c of the component AVI File Parser. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The bug was initially reported by the researcher to the wrong project. This vulnerability only affects products that are no longer supported by the maintainer.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
libav / libav cpe:2.3:a:libav:libav:*:*:*:*:*:*:*:*

References