VYPR

rpm package

opensuse/ffmpeg-7&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/ffmpeg-7&distro=openSUSE%20Tumbleweed

Vulnerabilities (69)

  • CVE-2026-75147HigAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The keyframe detection loop that searches for a sequence header OBU advanced its pointer and remaining-size counter by the encoded header length plus the OBU payload

  • CVE-2026-75146HigAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negative. The fragment retrieval functio

  • CVE-2026-75145MedAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The OBU size is cast to long before comparison against the remaining frame size. On targets where long is 32 bits, including 64-bit Windows, suffi

  • CVE-2026-75144HigAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copies an input-derived data unit or

  • CVE-2026-75143CriAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exce

  • CVE-2026-75142HigAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with an excessive number of streams tri

  • CVE-2026-75141HigAug 19, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap buffer overflow. A crafted HEVC inp

  • CVE-2026-70632HigAug 6, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions from 4.4 up to, but not including, 9.0 contain an out-of-bounds heap write vulnerability in the native GoPro CineForm HD (CFHD) decoder that allows remote attackers to corrupt heap memory by supplying a crafted AVI file during stream probing. The cfhd_decode() fun

  • CVE-2026-70631MedAug 6, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions from 0.5 up to, but not including, 9.0 contain an uninitialized heap memory disclosure vulnerability in the native TIFF decoder in libavcodec/tiff.c. An attacker who can cause FFmpeg to decode a crafted TIFF file can supply a valid Deflate-compressed strip that te

  • CVE-2026-70630MedAug 6, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the native Screenpresso decoder (libavcodec/screenpresso.c) that allows attackers to recover sensitive memory contents by supplying a crafted SPV1 packet with a valid

  • CVE-2026-70629MedAug 6, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the native RSCC decoder (libavcodec/rscc.c) that allows attackers to disclose heap memory contents by supplying a crafted video file with a compressed tile that decom

  • CVE-2026-70628HigAug 6, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions from 0.5 up to, but not including, 9.0 contain a signed integer overflow vulnerability in the DVB subtitle parser in libavcodec/dvbsub_parser.c that allows attackers to trigger a heap buffer overflow by supplying a crafted WTV file. The overflow causes the bounds-

  • CVE-2026-66041HigJul 24, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write vulnerability in the vf_quirc filter that allows an attacker to corrupt heap memory by supplying a crafted PGS/SUP subtitle file with mismatched frame dimensions. Attackers can provide a subtit

  • CVE-2026-66039HigJul 24, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability in the MACE6 audio decoder that allows attackers to corrupt heap memory by supplying a crafted CAF file with a malicious bytes_per_packet value. Attackers can craft a CAF file with ove

  • CVE-2026-66038MedJul 24, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg through 8.1.2, fixed in commit 8670835, contains an information disclosure vulnerability in the LCL/ZLIB video decoder that allows attackers to expose uninitialized heap memory by supplying a valid zlib stream that inflates to fewer bytes than the expected frame size. The

  • CVE-2026-66037MedJul 24, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg through 8.1.2, fixed in commit 5d7112c, contains an uncontrolled resource consumption vulnerability in the IAMF demuxer that allows an unauthenticated attacker to cause multi-gigabyte memory allocation from a 17-byte input file by supplying a crafted count_label field. The

  • CVE-2026-66036HigJul 24, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability in the vf_hqdn3d filter that allows attackers to corrupt heap memory by supplying a crafted video whose frame resolution increases between frames when filtergraph reinitialization is

  • CVE-2026-65706HigJul 23, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_swaprect video filter that allows attackers to corrupt heap memory by supplying a crafted NV12 video frame with odd width dimensions. The filter_frame() function reuses a temporary row buffer

  • CVE-2026-65705HigJul 23, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg versions 3.4 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_floodfill video filter that allows attackers to corrupt heap memory by supplying a dynamically sized video stream with filtergraph reinitialization disabled via -reinit_filter 0. When config_

  • CVE-2026-65704HigJul 23, 2026
    affected < 7.1.5-2.1fixed 7.1.5-2.1

    FFmpeg through 8.1.2 contains an out-of-bounds write vulnerability that allows attackers to cause heap corruption by supplying a crafted ffconcat file processed with the -safe 0 flag. The TY demuxer's demux_audio() function decrements packet size without bounds checking, producin

Page 1 of 4