CVE-2025-25473

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 18, 2025
Updated: Feb 20, 2025
CWE ID 476

Summary

CVE-2025-25473 is a vulnerability affecting FFmpeg's git master version, specifically the libavformat/mov.c component. A NULL pointer dereference issue was discovered in this component, which can lead to crashes or even potentially more serious consequences, such as arbitrary code execution, if exploited. The vulnerability was present before the commit c08d30, and users of FFmpeg are advised to update to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share