PT-2026-64154 · FFmpeg+3 · Ffmpeg+3

·

CVE-2026-65703

·

Published

2026-07-23

·

Updated

2026-09-09

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FFmpeg versions 2.7 through 8.1.2
Description An out-of-bounds write issue exists in the TDSC video decoder. A remote attacker can cause heap corruption by providing a specially crafted AVI file that alters frame dimensions across TDSF frames. The tdsc parse tdsf() function does not unreference the current reference frame before calling av frame get buffer(). This leads the tdsc blit() and tdsc yuv2rgb() functions to write attacker-controlled pixel data beyond the boundaries of the undersized reference frame buffer, which can result in a process crash or potential arbitrary code execution.
Recommendations Update FFmpeg to a version later than 8.1.2.

Exploit

Fix

DoS

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-65703
ECHO-2909-5985-DDB1
JLSEC-2026-1178
OESA-2026-3542
OESA-2026-3543
OESA-2026-3544
OPENSUSE-SU-2026:11545-1
OPENSUSE-SU-2026:11563-1
OPENSUSE-SU-2026:11665-1
OPENSUSE-SU-2026:11682-1
SUSE-SU-2026:3934-1
USN-8716-1
USN-8716-2

Affected Products

Ffmpeg
Linuxmint
Red Os
Ubuntu