Double Free Vulnerability in FFmpeg n7.0 by FFmpeg
CVE-2024-35368

Currently unrated

Key Information:

Vendor

FFmpeg

Status
Vendor
CVE Published:
29 November 2024

What is CVE-2024-35368?

FFmpeg version n7.0 is susceptible to a double free vulnerability located in the rkmpp_retrieve_frame function within the libavcodec/rkmppdec.c file. This flaw can lead to memory corruption and may potentially be exploited by attackers to execute arbitrary code or crash applications that utilize the affected library.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.