FFmpeg before 8.1 has an integer overflow. [CVE-2026-40962] #73

Open
opened 2026-08-06 12:38:02 +00:00 by victor · 0 comments
Member

Installed: 7.1.5
Upgrade to 8.1

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

Installed: 7.1.5 Upgrade to 8.1 FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.
victor added this to the v0.1.2 milestone 2026-08-06 12:38:02 +00:00
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
MinBZK/DAWO-NixOS#73
No description provided.