Stack Buffer Overflow in FFmpeg's MPEG-PS Muxer
CVE-2026-75142

8.5HIGH

Key Information:

Vendor

Ffmpeg

Status
Vendor
CVE Published:
19 August 2026

What is CVE-2026-75142?

The vulnerability in FFmpeg's MPEG-PS muxer is caused by a stack buffer overflow that occurs when processing inputs with more streams than the muxer's fixed-size stack buffer can handle. This flaw allows for the potential overflow during MPEG-PS muxing, making it critical for users to limit the number of streams in their inputs or upgrade to the patched version to mitigate the risk.

Affected Version(s)

FFmpeg 0 < 9d786e4b5e9b8482651928574de33772aeee7be1

References

CVSS V4

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Joshua Rogers (AISLE Research)
.