FFmpeg是FFmpeg组织开源的一套可录制、转换以及流化音视频的完整解决方案。 FFmpeg 8.1.2及之前版本存在安全漏洞,该漏洞源于TY demuxer的demux_audio()函数在减少数据包大小时未进行边界检查,产生负大小值,传递给shorten_decode_frame()中的memcpy()后转换为接近SIZE_MAX,导致越界读取和写入,攻击者可通过提供特制的ffconcat文件并处理-safe 0标志造成堆损坏。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-65703 | 7.8 HIGH | FFmpeg 2.7 - 8.1.2 Out-of-Bounds Write in TDSC Video Decoder |
| CVE-2026-65706 | 7.8 HIGH | FFmpeg 3.0 - 8.1.2 vf_swaprect Out-of-Bounds Write via NV12 Frame Processing |
| CVE-2026-65705 | 7.8 HIGH | FFmpeg 3.4 - 8.1.2 vf_floodfill Out-of-Bounds Write via filter_frame() |
No comments yet