ELA-1361-1 ffmpeg security update

out-of-bounds read, assert errors and NULL pointer dereferences

2025-03-30
Packageffmpeg
Version7:4.1.11-0+deb10u4 (buster)
Related CVEs CVE-2024-36613 CVE-2025-0518 CVE-2025-22919 CVE-2025-22921


Several issues have been found in ffmpeg, a library and tools for transcoding, streaming and playing of multimedia files. The issues are related to out-of-bounds read, assert errors and NULL pointer dereferences.



For Debian 10 buster, these problems have been fixed in version 7:4.1.11-0+deb10u4.

We recommend that you upgrade your ffmpeg packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.