CVE-2014-125017: Ffmpeg
High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.
A vulnerability classified as critical was found in FFmpeg 2.0. This vulnerability affects the function rpza_decode_stream. The manipulation leads to memory corruption. The attack can be initiated remotely. The name of the patch is Fixes Invalid Writes. It is recommended to apply a patch to fix this issue.
Affected products
- Ffmpeg Ffmpeg: version 2.0 only
Published 2022-06-18. Last modified 2026-06-17.