PT-2026-32368 · FFmpeg+1 · Ffmpeg+1

·

CVE-2026-30997

·

Published

2026-04-13

·

Updated

2026-07-09

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions FFmpeg version 8.0.1
Description An out-of-bounds read occurs in the read global param() function within the libavcodec/av1dec.c component. This issue allows attackers to cause a Denial of Service (DoS) by providing a crafted input.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09324
CVE-2026-30997
ECHO-2BA2-F811-BA46
JLSEC-2026-649
MGASA-2026-0153
OESA-2026-2315
OESA-2026-2928
OPENSUSE-SU-2026:10890-1
OPENSUSE-SU-2026:10931-1
OPENSUSE-SU-2026:11009-1
OPENSUSE-SU-2026:20914-1
OPENSUSE-SU-2026:21258-1
SUSE-SU-2026:22573-1
SUSE-SU-2026:2444-1
SUSE-SU-2026:2445-1

Affected Products

Ffmpeg
Red Os