Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2022-48434

Опубликовано: 04 сент. 2025
Источник: msrc
CVSS3: 8.1
EPSS Низкий

Описание

libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in worker threads, which allows attackers to trigger a use-after-free and execute arbitrary code in some circumstances (e.g., hardware re-initialization upon a mid-video SPS change when Direct3D11 is used).

EPSS

Процентиль: 46%
0.00233
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 2 лет назад

libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in worker threads, which allows attackers to trigger a use-after-free and execute arbitrary code in some circumstances (e.g., hardware re-initialization upon a mid-video SPS change when Direct3D11 is used).

CVSS3: 8.1
nvd
больше 2 лет назад

libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in worker threads, which allows attackers to trigger a use-after-free and execute arbitrary code in some circumstances (e.g., hardware re-initialization upon a mid-video SPS change when Direct3D11 is used).

CVSS3: 8.1
debian
больше 2 лет назад

libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and ...

suse-cvrf
больше 2 лет назад

Security update for ffmpeg

suse-cvrf
больше 2 лет назад

This update has recommended fixes for ffmpeg-4

EPSS

Процентиль: 46%
0.00233
Низкий

8.1 High

CVSS3