An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-3454-1 | ffmpeg security update |
![]() |
DSA-5394-1 | ffmpeg security update |
![]() |
EUVD-2022-42536 | An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability. |
![]() |
USN-5958-1 | FFmpeg vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 07 Aug 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Debian
Debian debian Linux Fedoraproject Fedoraproject fedora |
|
CPEs | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:* |
|
Vendors & Products |
Debian
Debian debian Linux Fedoraproject Fedoraproject fedora |
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Wed, 16 Apr 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-04-16T14:45:10.879Z
Reserved: 2022-09-02T00:00:00.000Z
Link: CVE-2022-3109

Updated: 2024-08-03T01:00:10.585Z

Status : Analyzed
Published: 2022-12-16T15:15:09.483
Modified: 2025-08-07T19:26:18.477
Link: CVE-2022-3109

No data.

No data.