FFmpeg 8.1.3 之前的版本中存在 HLS(HTTP Live Streaming)解复用器无限循环漏洞,远程攻击者可利用此漏洞导致拒绝服务。该漏洞的原因是 parse_playlist() 函数在媒体播放列表(Media Playlist)中接受了主播放列表(Master Playlist)标签。攻击者可通过诱导受害者打开一个精心构造的自引用播放列表,在 hls_read_header() 中无限添加变体(variants),从而导致 CPU 和 I/O 资源的无界消耗。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-107696 | 6.5 MEDIUM | FFmpeg through 9.0.2 Infinite Loop via RTSP Redirect Handling in rtsp.c |
| CVE-2026-107675 | 5.9 MEDIUM | FFmpeg through 9.0.2 Missing SSH Host Key Verification in sftp Protocol |
| CVE-2026-107698 | 5.4 MEDIUM | FFmpeg before 7.1.4 and 8.0.2 SSRF via RTSP Redirect Handling |
| CVE-2026-107660 | 4.8 MEDIUM | FFmpeg before 8.1.3 and 9.x before 9.0.2 mbedTLS Hostname Verification Bypass for IP Hosts |
| CVE-2026-107677 | 4.7 MEDIUM | FFmpeg through 9.0.2 DASH Demuxer Infinite Loop via Empty SegmentTemplate Media |
| CVE-2026-107678 | 4.7 MEDIUM | FFmpeg through 9.0.2 Stack Exhaustion via Recursive Free of pssh Boxes |
| CVE-2026-107697 | 4.3 MEDIUM | FFmpeg before 8.1.3 HLS Demuxer Security Check Bypass via parse_playlist() |
| CVE-2026-107676 | 3.3 LOW | FFmpeg through 9.0.2 Uninitialized Memory Disclosure via HDR10+ Metadata Serializer |
No comments yet