Количество 4
Количество 4
CVE-2026-75143
(FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RI ...)
CVE-2026-75143
FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination size. This is reachable via the async:rist:// URL scheme, where the async wrapper supplies a smaller buffer than the received payload. A remote RIST sender can trigger the overflow by sending a packet whose payload exceeds the caller buffer size.
CVE-2026-75143
FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RI ...
GHSA-7qc3-xqxj-426p
FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination size. This is reachable via the async:rist:// URL scheme, where the async wrapper supplies a smaller buffer than the received payload. A remote RIST sender can trigger the overflow by sending a packet whose payload exceeds the caller buffer size.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-75143 (FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RI ...) | CVSS3: 9.8 | 0% Низкий | 8 дней назад | |
CVE-2026-75143 FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination size. This is reachable via the async:rist:// URL scheme, where the async wrapper supplies a smaller buffer than the received payload. A remote RIST sender can trigger the overflow by sending a packet whose payload exceeds the caller buffer size. | CVSS3: 9.8 | 0% Низкий | 8 дней назад | |
CVE-2026-75143 FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RI ... | CVSS3: 9.8 | 0% Низкий | 8 дней назад | |
GHSA-7qc3-xqxj-426p FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination size. This is reachable via the async:rist:// URL scheme, where the async wrapper supplies a smaller buffer than the received payload. A remote RIST sender can trigger the overflow by sending a packet whose payload exceeds the caller buffer size. | CVSS3: 9.8 | 0% Низкий | 8 дней назад |
Уязвимостей на страницу