Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2jm-whqf-vrvv

Опубликовано: 14 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability was found in FFmpeg 8.0.x. This affects the function parse_playlist of the file libavformat/hlsproto.c of the component Duration Parser. Performing a manipulation of the argument duration/target_duration results in denial of service. The attack is possible to be carried out remotely. Upgrading to version 8.1 and 9.0 is able to mitigate this issue. The patch is named 64fafd63f0b4. Upgrading the affected component is recommended.

A vulnerability was found in FFmpeg 8.0.x. This affects the function parse_playlist of the file libavformat/hlsproto.c of the component Duration Parser. Performing a manipulation of the argument duration/target_duration results in denial of service. The attack is possible to be carried out remotely. Upgrading to version 8.1 and 9.0 is able to mitigate this issue. The patch is named 64fafd63f0b4. Upgrading the affected component is recommended.

EPSS

Процентиль: 28%
0.0035
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 4.3
ubuntu
2 дня назад

A vulnerability was found in FFmpeg 8.0.x. This affects the function parse_playlist of the file libavformat/hlsproto.c of the component Duration Parser. Performing a manipulation of the argument duration/target_duration results in denial of service. The attack is possible to be carried out remotely. Upgrading to version 8.1 and 9.0 is able to mitigate this issue. The patch is named 64fafd63f0b4. Upgrading the affected component is recommended.

CVSS3: 4.3
nvd
2 дня назад

A vulnerability was found in FFmpeg 8.0.x. This affects the function parse_playlist of the file libavformat/hlsproto.c of the component Duration Parser. Performing a manipulation of the argument duration/target_duration results in denial of service. The attack is possible to be carried out remotely. Upgrading to version 8.1 and 9.0 is able to mitigate this issue. The patch is named 64fafd63f0b4. Upgrading the affected component is recommended.

CVSS3: 4.3
debian
2 дня назад

A vulnerability was found in FFmpeg 8.0.x. This affects the function p ...

EPSS

Процентиль: 28%
0.0035
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-404