Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-40962

Опубликовано: 16 апр. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.9

Описание

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

РелизСтатусПримечание
devel

needed

esm-apps-legacy/xenial

not-affected

code not present
esm-apps/bionic

not-affected

code not present
esm-apps/focal

released

7:4.2.7-0ubuntu0.1+esm13
esm-apps/jammy

released

7:4.4.2-0ubuntu0.22.04.1+esm12
esm-apps/noble

released

7:6.1.1-3ubuntu5+esm10
esm-apps/resolute

released

7:8.0.1-3ubuntu2+esm1
esm-apps/xenial

ignored

end of ESM support, was needs-triage
jammy

needed

noble

needed

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

needs-triage

jammy

DNE

noble

DNE

questing

DNE

resolute

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 3%
0.00134
Низкий

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.8
redhat
4 месяца назад

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

CVSS3: 4.9
nvd
4 месяца назад

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

CVSS3: 4.9
debian
4 месяца назад

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds ...

suse-cvrf
3 месяца назад

Security update for ffmpeg-4

CVSS3: 4.9
github
4 месяца назад

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

EPSS

Процентиль: 3%
0.00134
Низкий

4.9 Medium

CVSS3