FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.
[
{
"signature_version": "v1",
"digest": {
"length": 6012.0,
"function_hash": "324941801385009115336637907873512382711"
},
"id": "CVE-2024-36619-830d574e",
"source": "https://github.com/ffmpeg/ffmpeg/commit/28c7094b25b689185155a6833caf2747b94774a4",
"deprecated": false,
"target": {
"function": "decode_5elp",
"file": "libavcodec/wavarc.c"
},
"signature_type": "Function"
}
]