Integer Overflow and Invalid Input Vulnerability in rust-ffmpeg by FFMPEG
CVE-2025-57614

7.5HIGH

Key Information:

Vendor

FFMPEG

Vendor
CVE Published:
2 September 2025

What is CVE-2025-57614?

An integer overflow and invalid input vulnerability exists in rust-ffmpeg 0.3.0, specifically after commit 5ac0527. This flaw can be triggered when dimension parameters are set to zero or exceed i32::MAX, resulting in an unchecked cast. Such conditions violate the preconditions of the underlying C function, leading to undefined behavior that may allow an attacker to initiate a denial of service or, in certain circumstances, execute arbitrary code.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.