PT-2026-64156 · FFmpeg+3 · Ffmpeg+3

·

CVE-2026-65705

·

Published

2026-07-23

·

Updated

2026-09-09

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FFmpeg versions 3.4 through 8.1.2
Description An out-of-bounds write issue exists in the vf floodfill video filter. This occurs when a dynamically sized video stream is supplied while filtergraph reinitialization is disabled via -reinit filter 0. The config input() function allocates the points traversal stack based on the initial frame dimensions; if a subsequent larger frame is processed, the filter frame() function performs flood-fill neighbor pushes beyond the original allocation boundary. This leads to heap corruption, which can cause a process crash or potentially allow arbitrary code execution depending on the heap layout and process hardening.
Recommendations Update FFmpeg to a version later than 8.1.2. As a temporary mitigation, avoid using the vf floodfill filter with the -reinit filter 0 option when processing dynamically sized video streams.

Exploit

Fix

DoS

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-65705
ECHO-D8AF-6409-ADC1
JLSEC-2026-1180
OESA-2026-3542
OESA-2026-3543
OESA-2026-3544
OPENSUSE-SU-2026:11545-1
OPENSUSE-SU-2026:11563-1
OPENSUSE-SU-2026:11665-1
OPENSUSE-SU-2026:11682-1
SUSE-SU-2026:3934-1
USN-8716-1
USN-8716-2

Affected Products

Ffmpeg
Linuxmint
Red Os
Ubuntu