Candidate: CVE-2022-1475 PublicDate: 2022-05-02 19:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1475 https://trac.ffmpeg.org/ticket/9651 https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=757da974b21833529cc41bdcc9684c29660cdfa8 https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=e9e2ddbc6c78cc18b76093617f82c920e58a8d1f (n4.4.2) https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=fa2e4afe8d0a23fac37392ef6506cfc9841f8d3d (n4.3.4) Description: An integer overflow vulnerability was found in FFmpeg 5.0.1 and in previous versions in g729_parse() in llibavcodec/g729_parser.c when processing a specially crafted file. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_ffmpeg: upstream_ffmpeg: released (7:4.4.2-1) bionic_ffmpeg: needs-triage focal_ffmpeg: needs-triage impish_ffmpeg: needs-triage jammy_ffmpeg: needs-triage devel_ffmpeg: needs-triage