Debian alert DSA-6007-1 (ffmpeg)
From: | Moritz Muehlenhoff <jmm@debian.org> | |
To: | debian-security-announce@lists.debian.org | |
Subject: | [SECURITY] [DSA 6007-1] ffmpeg security update | |
Date: | Sun, 21 Sep 2025 14:27:49 +0000 | |
Message-ID: | <aNALZWkudDzqh_k1@seger.debian.org> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6007-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff September 21, 2025 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : ffmpeg CVE ID : CVE-2025-1594 CVE-2025-7700 CVE-2025-10256 Several vulnerabilities have been discovered in the FFmpeg multimedia framework, which could result in denial of service or potentially the execution of arbitrary code if malformed files/streams are processed. For the stable distribution (trixie), these problems have been fixed in version 7:7.1.2-0+deb13u1. We recommend that you upgrade your ffmpeg packages. For the detailed security status of ffmpeg please refer to its security tracker page at: https://security-tracker.debian.org/tracker/ffmpeg Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmjQCy0ACgkQEMKTtsN8 TjaezxAAt+bnQvZ1aRuAq7IvOA8yiDjgj+VhJG+wUi6uP2EHPz+oba+mWDqQuHKt KyKZW0pQi4mDrBmN0115oTjc1RfXqgfL2rUuWyVy/wBND+5vxtwuHEjCC3dKMJmd vmwo4Qy5WXj1ArBG3MOFt2DF+MovOwMxIyBYCYYLbwv8YQ8jJiEZVovFhZO3z+Si /B9I2wzRt24yFeYeHBsy7R1UBZCqdwFAQga9djdX2rG8454hcVcfdSm4jdgJZO/d KNUbbmavVK5JbfPn4U8CgOdDnduJy3rJDE49enrMOPcyu2gGbReBJXmlnLwXoznC C57URbzOcm/upvl3BR1iVvnv462WyO8ocwiVfChYBtImXhCGhWwaoolCJGbnXSN+ SEDwC68Z51zHqhdP/F8rb0XDtcS5Jg3Kal+t45FEnjM5xKCCz0S4h1Xt7YP94HU4 QQbw1xTygqE272NNVUJhThHyTd1sxizEIhYofHN74XmJA5Chfw0PLJXnN6DNr63h DMIJM52iHY1xqQxIx/GoMpK9FCmNdkjaNZZMMxoBMIRU5PIPIVckkW/XmXuCvuMk q46z6Vwj+TZqLNj9CGlQc1LM4VV+AjgGuCby3H/ZYUu3dWuwXoexndWNpiS5X16p kbTV1oFTXSPipRE0r2r61ZKtDzphy9OitKg8uWjysnBzve6wayI= =F4UU -----END PGP SIGNATURE-----