Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

github логотип

GHSA-mjxr-6gqf-w78h

3 месяца назад

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2026-58049

3 месяца назад

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2026-58049

3 месяца назад

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 7.6
EPSS: Низкий
nvd логотип

CVE-2026-58049

3 месяца назад

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2026-58049

3 месяца назад

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) perform ...

CVSS3: 8.6
EPSS: Низкий
fstec логотип

BDU:2026-08913

3 месяца назад

Уязвимость функции decode_dlta() файла libavcodec/rasc.c видеодекодера RASC мультимедийной библиотеки FFmpeg, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.6
EPSS: Низкий
redos логотип

ROS-20260820-80-0009

около 1 месяца назад

Уязвимость ffmpeg

CVSS3: 8.6
EPSS: Низкий
redos логотип

ROS-20260820-73-0007

около 1 месяца назад

Уязвимость ffmpeg

CVSS3: 8.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:4150-1

5 дней назад

Security update for ffmpeg-4

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:4149-1

5 дней назад

Security update for ffmpeg-4

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-mjxr-6gqf-w78h

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-58049

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-58049

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 7.6
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-58049

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check and validates the DLTA region in pixel rather than byte units, so a DLTA run on a PAL8 frame can access several bytes past the row allocation. A crafted media stream using the RASC FourCC, decoded by libavcodec, triggers a bitstream-controlled out-of-bounds heap write and adjacent out-of-bounds read, leading to memory corruption.

CVSS3: 8.6
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-58049

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) perform ...

CVSS3: 8.6
0%
Низкий
3 месяца назад
fstec логотип
BDU:2026-08913

Уязвимость функции decode_dlta() файла libavcodec/rasc.c видеодекодера RASC мультимедийной библиотеки FFmpeg, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.6
0%
Низкий
3 месяца назад
redos логотип
ROS-20260820-80-0009

Уязвимость ffmpeg

CVSS3: 8.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260820-73-0007

Уязвимость ffmpeg

CVSS3: 8.6
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:4150-1

Security update for ffmpeg-4

5 дней назад
suse-cvrf логотип
SUSE-SU-2026:4149-1

Security update for ffmpeg-4

5 дней назад

Уязвимостей на страницу