Home

Description

A flaw was found in FFmpeg’s ALS audio decoder, where it does not properly check for memory allocation failures. This can cause the application to crash when processing certain malformed audio files. While it does not lead to data theft or system control, it can be used to disrupt services and cause a denial of service.

PUBLISHED Reserved 2025-07-16 | Published 2025-11-07 | Updated 2025-11-07 | Assigner redhat




MEDIUM: 5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Problem types

NULL Pointer Dereference

Product status

Default status
unaffected

Any version before 8.0
affected

Timeline

2025-07-16:Reported to Red Hat.
2025-07-15:Made public.

Credits

Red Hat would like to thank Jiasheng Jiang for reporting this issue.

References

access.redhat.com/security/cve/CVE-2025-7700 vdb-entry

bugzilla.redhat.com/show_bug.cgi?id=2380420 (RHBZ#2380420) issue-tracking

cve.org (CVE-2025-7700)

nvd.nist.gov (CVE-2025-7700)

Download JSON