PT-2026-64412 · FFmpeg+3 · Ffmpeg+3

·

CVE-2026-66036

·

Published

2026-07-24

·

Updated

2026-09-08

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FFmpeg versions prior to 8.1.2
Description A heap out-of-bounds write exists in the vf hqdn3d filter. This occurs when filtergraph reinitialization is disabled using the -reinit filter 0 option. An attacker can provide a crafted video where the frame resolution increases between frames. In this scenario, the config input() function allocates undersized per-plane line-history buffers based on the initial frame width, and subsequent larger frames cause the denoise spatial() function to write beyond the allocated boundary, leading to heap memory corruption.
Recommendations Update to the version containing commit 5d7112c. Avoid using the -reinit filter 0 option when processing untrusted video inputs.

Exploit

Fix

DoS

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-66036
ECHO-CD22-8B98-8DC9
JLSEC-2026-1182
OESA-2026-3541
OESA-2026-3542
OESA-2026-3543
OESA-2026-3544
OESA-2026-3545
OPENSUSE-SU-2026:11545-1
OPENSUSE-SU-2026:11563-1
OPENSUSE-SU-2026:11665-1
OPENSUSE-SU-2026:11682-1
SUSE-SU-2026:3934-1
USN-8671-1
USN-8738-1

Affected Products

Ffmpeg
Linuxmint
Red Os
Ubuntu