CVE-2024-35365: Ffmpeg

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

FFmpeg version n6.1.1 has a double-free vulnerability in the fftools/ffmpeg_mux_init.c component of FFmpeg, specifically within the new_stream_audio function.

Affected products

  • Ffmpeg Ffmpeg: version 6.1.1 only

Published 2025-01-03. Last modified 2026-06-17.