A flaw was found in FFmpegs HLS playlist parsing. This vulnerability allows a denial of service via a maliciously crafted HLS playlist that triggers a null pointer dereference during initialization.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Ffmpeg | Ffmpeg | 2.0 (including) | 6.0 (including) |
| Ffmpeg | Ubuntu | devel | * |
| Ffmpeg | Ubuntu | esm-apps/bionic | * |
| Ffmpeg | Ubuntu | esm-apps/focal | * |
| Ffmpeg | Ubuntu | esm-apps/jammy | * |
| Ffmpeg | Ubuntu | esm-apps/xenial | * |
| Ffmpeg | Ubuntu | focal | * |
| Ffmpeg | Ubuntu | jammy | * |
| Ffmpeg | Ubuntu | noble | * |
| Ffmpeg | Ubuntu | oracular | * |
| Ffmpeg | Ubuntu | plucky | * |
| Ffmpeg | Ubuntu | questing | * |
| Ffmpeg | Ubuntu | upstream | * |