Vulnerability Description
A reachable assertion in FFmpeg git-master commit N-113007-g8d24a28d06 allows attackers to cause a Denial of Service (DoS) via opening a crafted AAC file.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://trac.ffmpeg.org/ticket/11385
- https://lists.debian.org/debian-lts-announce/2025/02/msg00037.html
FAQ
What is CVE-2025-22919?
CVE-2025-22919 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A reachable assertion in FFmpeg git-master commit N-113007-g8d24a28d06 allows attackers to cause a Denial of Service (DoS) via opening a crafted AAC file.
How severe is CVE-2025-22919?
CVE-2025-22919 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-22919?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.