DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-86ch-hmfx-4vhp

Package

ffmpeg-7.1

Component

ffmpeg-7.1

Latest update

Pending upstream fix

Aliases

  • CVE-2025-59733
  • GHSA-hpfq-c235-5854

Severity

Unknown
Eliminate CVEs with Chainguard hardened images

Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.

Start for free

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-59733

Updates

Status

Pending upstream fix

Impact

This CVE has been fixed upstream[1] but has not yet been backported to version 7.1 and the commit does not cherry-pick cleanly. Upstream maintainers will need to backport the fix to 7.1. [1]https://github.com/FFmpeg/FFmpeg/commit/0469d68acb52081ca8385b844b9650398242be0f

Status

Under investigation


The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.