Integer Overflow Vulnerability in FFmpeg's Video Processing Component
CVE-2026-38343

6.5MEDIUM

Key Information:

Vendor

FFmpeg

Status
Vendor
CVE Published:
27 August 2026

What is CVE-2026-38343?

An integer overflow issue has been identified in the libavfilter component of FFmpeg, specifically within the vf_scale.c file. This vulnerability could allow an attacker to exploit the system by providing a specially crafted video file, leading to a Denial of Service. Ensuring that systems using affected versions of FFmpeg are updated is crucial to prevent potential interruptions in service.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.