CVE-2025-25473
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Feb 18, 2025
Updated: Feb 20, 2025
CWE ID 476
Summary
CVE-2025-25473 is a vulnerability affecting FFmpeg's git master version, specifically the libavformat/mov.c component. A NULL pointer dereference issue was discovered in this component, which can lead to crashes or even potentially more serious consequences, such as arbitrary code execution, if exploited. The vulnerability was present before the commit c08d30, and users of FFmpeg are advised to update to a patched version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share