CVE-2014-125008: Ffmpeg

Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A vulnerability classified as problematic has been found in FFmpeg 2.0. Affected is the function vorbis_header of the file libavformat/oggparsevorbis.c. The manipulation leads to memory corruption. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue.

Affected products

  • Ffmpeg Ffmpeg: version 2.0 only

Published 2022-06-18. Last modified 2026-06-17.