FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.
[ { "source": "https://github.com/ffmpeg/ffmpeg/commit/28c7094b25b689185155a6833caf2747b94774a4", "target": { "function": "decode_5elp", "file": "libavcodec/wavarc.c" }, "digest": { "function_hash": "324941801385009115336637907873512382711", "length": 6012.0 }, "deprecated": false, "id": "CVE-2024-36619-830d574e", "signature_type": "Function", "signature_version": "v1" } ]