FFmpeg: Multiple vulnerabilities Multiple vulnerabilities have been found in FFmpeg, the worst of which could result in the arbitrary execution of code. ffmpeg 2021-05-26 2021-05-26 763315 781146 local, remote 4.4 4.4

FFmpeg is a complete, cross-platform solution to record, convert and stream audio and video.

Multiple vulnerabilities have been discovered in FFmpeg. Please review the CVE identifiers referenced below for details.

A remote attacker could entice a user to open a specially crafted media file using FFmpeg, possibly resulting in execution of arbitrary code with the privileges of the process or a Denial of Service condition.

There is no known workaround at this time.

All FFmpeg users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=media-video/ffmpeg-4.4"
CVE-2020-35964 CVE-2020-35965 CVE-2021-30123 whissi whissi