CVE-2025-8585 | libav up to 12.3 DSS File Demuxer /avtools/avconv.c main double free (ID 11680 / Nessus ID 253581)
A vulnerability identified as critical has been detected in libav up to 12.3. This issue affects the function main of the file /avtools/avconv.c of the component DSS File Demuxer. This manipulation causes double free. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is tracked as CVE-2025-8585. The attack is restricted to local execution. Moreover, an exploit is present.
The bug was initially reported by the researcher to the wrong project.