CVE-2024-31585: Fedoraproject Fedora

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

Affected products

  • Fedoraproject Fedora: version 38 only; version 39 only; version 40 only
  • Ffmpeg Ffmpeg: from 5.1, before 7.0 (fixed in 7.0)

Published 2024-04-17. Last modified 2026-06-17.