High severity8.1NVD Advisory· Published Aug 19, 2026· Updated Aug 31, 2026
CVE-2026-75146
CVE-2026-75146
Description
FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negative. The fragment retrieval function checked only the upper bound before indexing the fragments array, allowing a negative index to be used and causing an out-of-bounds read. A malicious or misconfigured DASH server can trigger this by serving a live manifest with a decreasing startNumber across a manifest refresh.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- osv-coords5 versionspkg:rpm/opensuse/ffmpeg-4&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/ffmpeg-7&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/ffmpeg-7&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/ffmpeg-8&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/ffmpeg-9&distro=openSUSE%20Tumbleweed
< 4.4.8-5.1+ 4 more
- (no CPE)range: < 4.4.8-5.1
- (no CPE)range: < 7.1.5-160000.1.1
- (no CPE)range: < 7.1.5-2.1
- (no CPE)range: < 8.1.2-3.1
- (no CPE)range: < 9.0.1-3.1
Patches
Vulnerability mechanics
References
3News mentions
1- FFmpeg: Seven Vulnerabilities Including Critical Heap Overflow Disclosed TogetherVypr Intelligence · Aug 19, 2026