Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-6604


A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage consumption, potentially leading to degraded performance or denial of service via the demuxing of arbitrary data as XBIN-formatted data without proper format validation.


Published

2025-01-06T17:15:14.413

Last Modified

2025-08-05T18:05:55.853

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-99
  • Type: Secondary
    CWE-94

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ffmpeg ffmpeg ≤ 6.0 Yes

References